Crypto news, according to a GoPlus alert: EngageLab SDK (an Android SDK widely used for push notifications) has been found to have a serious security vulnerability affecting more than 50 million Android users, of whom about 30 million are cryptocurrency wallet users. The attacker installs a malicious App disguised as a legitimate application on the victim device, and sends malicious Intents to other apps that have integrated the EngageLab SDK, which can lead to malicious actions such as unauthorized access, theft of private keys, and login credentials. GoPlus recommends that developers and app vendors upgrade the SDK to patched versions 4.5.5 and above; ordinary users should update the relevant Android apps immediately, especially crypto wallets and financial apps.

View Original
This page may contain third-party content, which is provided for information purposes only (not representations/warranties) and should not be considered as an endorsement of its views by Gate, nor as financial or professional advice. See Disclaimer for details.
  • Reward
  • Comment
  • Repost
  • Share
Comment
Add a comment
Add a comment
No comments
  • Pin