Image for Article: Fake Google Security site uses PWA app to steal credentials, MFA codes

Article Details

Title
Article: Fake Google Security site uses PWA app to steal credentials, MFA codes
Impact Score
5 / 10
AI Summary (Processed Content)

A sophisticated phishing campaign uses a fake Google security page to trick users into installing a malicious Progressive Web App (PWA). This PWA steals one-time passcodes, cryptocurrency wallet addresses, and clipboard data, while also acting as a network proxy for the attacker. The campaign includes a companion Android app that requests extensive permissions to steal sensitive information and capture keystrokes. The main topics covered are the phishing attack method, the malicious PWA's capabilities, and the associated Android malware.

Original URL
https://www.bleepingcomputer.com/news/security/fake-google-security-site-uses-pwa-app-to-steal-credentials-mfa-codes/
Source Feed
BleepingComputer
Published Date
2026-03-02 20:23
Fetched Date
2026-03-04 13:42
Processed Date
2026-03-04 13:45
Embedding Status
Present
Cluster ID
Not Clustered
Raw Extracted Content