Slashdot Mirror


Fake WhatsApp App Downloaded 1 Million Times (fortune.com)

An anonymous reader quotes Fortune: Reddit users yesterday spotted an extremely convincing spoofed copy of the popular WhatsApp messenger on Google Play. The fake was downloaded by more than 1 million users, who instead of a messaging tool wound up with a bundle of ads... The fake WhatsApp was nearly indistinguishable from the real thing thanks to an invisible space placed at the end of the developer's name.

One of the security hounds discussing the case on Reddit pointed out that this was not an isolated incident, even for WhatsApp. A search for "WhatsApp" on Google Play currently shows no fewer than seven spoof apps using slight variations on the developer name "WhatsApp Inc.", including versions with extra spaces, asterisks, or commas. All of them have four-star review averages, presumably thanks to industrial-scale subversion of Play's review system.

6 of 51 comments (clear)

  1. I don't use nor trust google play by Anonymous Coward · · Score: 2, Informative

    I use, for example: https://f-droid.org/en/packages

    1. Re:I don't use nor trust google play by watermark · · Score: 3, Insightful

      How to download WhatsApp from Fdroid?

    2. Re:I don't use nor trust google play by Dog-Cow · · Score: 2

      If you think the WhatsApp app is a repackaged website, you need to choke to death on your phone.

  2. Re:Review process by known_coward_69 · · Score: 2

    Why would they? It's all about freedom for developers to upload anything they want.

  3. Nothing mod-worthy ... by CaptainDork · · Score: 5, Insightful

    I'm carrying ten mod points and there isn't one goddam comment (as of this writing) that's of any value.

    Including mine.

    --
    It little behooves the best of us to comment on the rest of us.
  4. Re:The star rating system is kind of dumb anyway. by datavirtue · · Score: 2

    Forget starrs or whatever. There needs to be a moderation list like we have on Slashdot. One of the list items could be: "This app is not what it appears to be."

    --
    I object to power without constructive purpose. --Spock