This New Phishing Campaign Uses a Fake Google Account Security Page to Steal Passwords and More



  • Attackers are abusing progressive web apps (PWAs) on Android
  • Victims lured through a phishing site google-prism[dot]com to install malicious PWA
  • PWA collects clipboards, crypto wallets, OTP, GPS and more

Threat actors have started turning to progressive web applications (PWAs) to do their evil deeds on Android, stealing login credentials, cryptocurrency wallet data, GPS information and more, experts warned.

Security researchers at Malwarebytes recently detailed one such campaign they detected in the wild, starting with a phishing email, which lured people to a fake Google site google-prism[dot]com.



Leave a Comment

Your email address will not be published. Required fields are marked *