android, apple, apps, extortion, google, mobile, android

Over 280 Android and iOS apps on the Google Play and the Apple App stores trapped users in loan schemes with misleading terms and employed various methods to extort and harass borrowers.

To fuel the operation’s extortion attempts, the apps stole excessive amounts of data from mobile phones not usually required to offer loans.

In a new report by cybersecurity firm Lookout, researchers uncovered 251 Android 35 iOS lending apps that were downloaded a combined total of 15 million times, mostly from users in India, Colombia, Mexico, Nigeria, Thailand, the Philippines, and Uganda.

Lookout reported all of them to Google and Apple for removal and was successfully able to remove all of them.

Predatory loan apps

These loan apps found great success in developing countries where people have limited financial opportunities and where reports of fraud are less likely to be prosecuted.

When installed, the predatory loan apps requested users grant risky permissions that enabled the threat actors to access sensitive information on the device, such as the contact list, SMS content, photos, media, etc.

android, apple, apps, extortion, google, mobile, android

Risky permissions requested upon installation (Lookout)

As soon as the permissions are given, the apps immediately begin to upload sensitive data from the device to their own servers.

android, apple, apps, extortion, google, mobile, android

Data exfiltration requests (Lookout)

If the user doesn’t approve these permission requests, the app will not allow them to submit loan requests.

On the first launch, and permissions are granted, the user is requested to fill out a KYC (Know Your Customer) form, requesting photographs of government ID cards, etc.

android, apple, apps, extortion, google, mobile, android

KYC forms in the loan apps (Lookout)

Next, the apps offer users deceiving or straight-out false loan terms so they are convinced to move forward.

When the victims receive part of their loan, the interest rate terms change, or previously hidden fees emerge, sometimes reaching up to one-third of the total amount borrowed.

Some users also report that the apps reduced the repayment period from a promised 180 days to only eight days, imposing hefty interest and penalty fees when overdue.

android, apple, apps, extortion, google, mobile, android

Scammed user comments (Lookout)

With most people surprised and unable or unwilling to repay the loans, the app operators begin to harass them using the data stolen in the first stage, contacting people from the device’s list and disclosing the debt to family and friends.

Some scammed users even report the lenders sent edited images stolen from the device to contacts, causing great distress.

Apple and Google intervene

Apple and Google allow micro-loan apps on their app stores but have stringent policies regulating their operation.

The guidelines dictate that the minimum repayment period should be 60 days, and the maximum annual percentage rate of charge should be 36%.

The above apps claimed terms that complied with these guidelines, but in practice, they followed a very different, much more aggressive approach, so the app stores removed them for term violations.

Unfortunately, there need to be more checks to prevent the operators of these apps from re-submit these types of apps to the app stores under different names, so users should be vigilant.

If you’re interested in using a mobile loan app, read user reviews first, research the lender’s reputation, and carefully consider the permission requests upon installation.

NEWS RELATED

Do you need antivirus software? Yes! Check out Kim’s pick

Do you need antivirus software? Yes! Check out Kim’s pick There’s nothing wrong with looking for new ways to save money. Cutting back on things like your cable or electric bill is clever. Just restrain yourself, so you don’t skimp on important things like antivirus software. With all the ...

View more: Do you need antivirus software? Yes! Check out Kim’s pick

Blackhawks Send Jaxson Stauber to Rockford as Bye Week Starts

Blackhawks send Stauber, 2 others to IceHogs originally appeared on NBC Sports Chicago With the Chicago Blackhawks heading into their bye week and the NHL All-Star break, the team made a series of roster moves on Sunday, sending a trio of players to the AHL’s Rockford IceHogs. According to ...

View more: Blackhawks Send Jaxson Stauber to Rockford as Bye Week Starts

Democrats want 8.7% pay hike for federal workers who were ‘subjected to’ Trump

Democrats are proposing an 8.7% pay hike for federal workers to compensate them for working during the COVID pandemic and the Trump administration. GC Images ​Democrats are proposing giving federal workers an 8.7% pay increase for toiling through the Trump administration and the coronavirus pandemic. The suggested pay increase ...

View more: Democrats want 8.7% pay hike for federal workers who were ‘subjected to’ Trump

Michael B. Jordan is Hollywood’s most eligible bachelor on ‘Saturday Night Live’

Michael B. Jordan leaned all the way into his Hollywood heartthrob status while making his “Saturday Night Live” hosting debut this weekend. The “Black Panther” and “Creed” star hosted the latest episode of “SNL” with musical guest Lil Baby. During his opening monologue, Jordan humorously addressed his recent split ...

View more: Michael B. Jordan is Hollywood’s most eligible bachelor on ‘Saturday Night Live’

Na tych telefonach aplikacja WhatsApp przestanie działać już 1 lutego! Oto lista smartfonów - sprawdź [30.01.2023]

Na tych telefonach aplikacja WhatsApp przestanie działać już 1 lutego! Oto lista smartfonów – sprawdź [30.01.2023] Na tych telefonach WhatsApp przestanie działać WhatsApp to darmowy komunikator internetowy przeznaczony głównie na urządzenia mobilne. Popularna aplikacja WhatsApp przestaje świadczyć usługi aktualizacji dla wielu użytkowników i z tego powody nie będzie już ...

View more: Na tych telefonach aplikacja WhatsApp przestanie działać już 1 lutego! Oto lista smartfonów - sprawdź [30.01.2023]

Burglar breaks into Seattle home and takes bath with all his clothes on

Police said a burglar broke into a Seattle home and took a bath with his clothes on. Getty Images/iStockphoto A burglar was found fully clothed enjoying a soak in a bathtub of the Seattle house he broke into Friday night, cops say. The female homeowner returned to her house ...

View more: Burglar breaks into Seattle home and takes bath with all his clothes on

Western University study shows vaping education led students to quit

A new study from Western University in London, Ont., shows that university students who were regularly vaping wanted to cut back after learning about the threat the habit could pose to their health. The study was conducted by PhD candidate Babac Salmani and health sciences professor Harry Prapavessis. It involved showing ...

View more: Western University study shows vaping education led students to quit

4-year-old walks into DC hospital with gunshot wound, police say

A 4-year-old girl brought herself to a Washington, DC hospital with a gunshot wound on January 28, 2023. Getty Images A 4-year-old girl walked into a Washington, DC, hospital with a gunshot wound Saturday, police say. The girl was breathing and conscious at the time of her arrival at ...

View more: 4-year-old walks into DC hospital with gunshot wound, police say

Tiny percent of NY state employees have sexual harassment training despite Hochul mandate

Paul Pelosi attack suspect calls California TV station from jail

Flybe collapse sparks scramble to hire bust airline’s staff

‘Fear’, ‘Infinity Pool’, ‘Skinamarink’ Scare Up Cash In Indie Horror Bonanza – Specialty Box Office

‘Avatar 2’ lleva siete fines de semana al tope de taquilla

El problema de Rusia amenaza los Juegos Olímpicos de París

Canadian spiritual leader accused of sex assault granted bail: report

Bayer Leverkusen gegen Borussia Dortmund: Bundesliga jetzt live im TV und im Stream

Prince Andrew urged to challenge settlement with Virginia Giuffre

'AARP The Magazine's' 2023 Movies for Grownups Awards

Annie Wersching Dies: Actress In ‘24’, ‘Bosch’ And ‘Timeless’ Was 45

England are 'not playing as well as we can', admits Jos Buttler after defeat to SA

OTHER NEWS