Binance Android APP Becomes A Soft Target For Hackers

Hacking attempts in the crypto market is not something new. In the most recent case, the Binance android app has been compromised. Hackers have modified the deposit address of some users by using app repackaging. So far, all complaints are about USDT (Tether stablecoin). According to reports, everything else working the same and the users cannot point out any difference unless their deposits are added to hackers’ accounts. It is suggested to check all your assets related to Binance App (Android).

Victims’ Narrative

One of the victims of the recent misfortune has told Wublockchain that he transferred 5 ETH from his MetaMask app to his Binance App as an over-the-counter transaction. He was using an android smartphone (Huawei Honor) and he scanned the QR code (ERC20). He even double-checked the wallet address before confirmation. A few minutes later, he was surprised to see that the account didn’t show any recent deposit. After waiting for a couple of hours, the victim finally contacted Binance customer support who informed him that this account doesn’t belong to any Binance user. The hackers had replaced the wallet address with their own somehow.

Related: BNB Chain to Conduct On-Chain Governance Voting to Prevent Further Hacking

Another person has also narrated a similar kind of story. The difference is that this user transferred crypto from OKX using the TRC20 network. The money at stake was 5k USDT which never showed in his account. The Binance customer support provided the same reply to this user as well.

According to recent on-chain statistics, a suspected hacker account has received 500,00 USDT over the last 25 days through almost 400 transactions. This account looks like this (TN9L…..NUz9).

Recommendations From Binance Official

Upon contact, a Binance official has advised the Binance Android users to visit Binance (web version) using google Traceless mode and compare the deposit address with the deposit address shown by the app. Proceed only if both addresses are the same. Furthermore, confirm the address by matching it with the email during withdrawals as well.

The official also recommended double-checking the address by making a small deposit. This transaction will save you from losing a huge sum.

According to experts, the malware is implanted in the Binance Android App. The people who download the app from third-party marketplaces are at higher risk. It is suggested to directly download it from the Play Store instead of searching for it on search engines.