Anyone with an Android phone in their pocket must pay attention to the latest warning and check their settings without delay.According to the team at NordVPN, cyber criminals are using a new tactic to steal money from smartphone users.The latest attack begins with ads posted on social media platforms - such as Facebook - that claim to offer easy access to popular apps such as Disney+, Google Authenticator, and even the National Lottery.
Virgin Media issues 24 hour countdown to claim a 4K LG TV for free Vodafone offers EE and O2 users a free iPhone and Android upgrade Tech news, reviews and latest gadgets plus selected offers and competitions Subscribe Invalid emailWe use your sign-up to provide content in ways you've consented to and to improve our understanding of you.This may include adverts from us and 3rd parties based on our understanding.You can unsubscribe at any time.
Read our Privacy PolicyOnce clicked, everything appears normal, and users are taken to what appears to be Google's official Play Store.Article continues below ADVERTISEMENTSadly, the applications on offer aren't the real deal, and instead, they deliver a package that hides itself on the phone and waits to attack.The process also silently signs the device up for push notifications, which fire gambling reminders directly to the lock screen and are deliberately difficult to disable.Even the back button is rigged.
Instead of returning users to the previous page, it reroutes them to the casino offer."NordVPN's Threat Intelligence research unit has uncovered a large-scale criminal operation that hijacks the logos and names of over 400 trusted brands to redirect unsuspecting people toward unregulated online gambling," NordVPN explained.Article continues below ADVERTISEMENT"The network — which NordVPN tracks as pwa_betterlinks — runs paid adverts on Facebook and Instagram impersonating household names including Google Authenticator, Kalshi, Disney+, Duolingo, Delta Air Lines, and national lotteries." Article continues below ADVERTISEMENTEU charges Google with abusing Android dominance Nord VPN is now urging users to be wary before installing any new apps and to make sure push notification permissions are set correctly.To stay safe, simply go to your phone's settings and check which websites have permission to send you alerts.If you spot anything you don't recognise, revoke it immediately."What we're looking at is essentially trust laundering.
Criminals take the credibility that legitimate companies have spent years building and redirect it toward their own ends," said Marijus Briedis, chief technology officer at NordVPN."By the time a victim realises something is wrong, they've already deposited money into a casino they've never heard of."Briedis advises anyone using social media to keep three things in mind:• A real app install always opens the official store.If tapping "Install" in an ad opens a web page rather than the Google Play Store or Apple App Store, stop immediately.• Check the address bar.A genuine Google Play listing lives at play.google.com.
Any other web address showing a store-style page — no matter how accurate the branding — is a fake.• Review your push notification permissions.Go to your phone's settings and check which websites have permission to send you alerts.Revoke anything you don't recognise.
Read More