GoPlus: EngageLab SDK has a serious vulnerability, putting 30 million crypto wallet users at risk

robot
Abstract generation in progress

ME News Report, April 10 (UTC+8), according to GoPlus warning, EngageLab SDK (a widely used Android SDK for push notifications) was found to have a serious security vulnerability, affecting over 50 million Android users, including about 30 million cryptocurrency wallet users. Attackers can install malicious apps disguised as legitimate applications on the victim’s device, sending malicious intents to other apps integrated with EngageLab SDK, which can lead to privilege escalation, private key theft, login credential theft, and other malicious activities. GoPlus recommends developers and app vendors upgrade the SDK to version 4.5.5 or later to fix the issue. Ordinary users should immediately update relevant Android apps, especially crypto wallets and financial apps. (Source: PANews)

View Original
This page may contain third-party content, which is provided for information purposes only (not representations/warranties) and should not be considered as an endorsement of its views by Gate, nor as financial or professional advice. See Disclaimer for details.
  • Reward
  • Comment
  • Repost
  • Share
Comment
Add a comment
Add a comment
No comments
  • Pin