产品中心

Apple approved a fake 'LastPass Password Manager' app for the App Store

字号+ 作者:668影视网电视剧大全 来源:新闻中心 2024-09-23 09:38:23 我要评论(0)

Apple's App Store review team is notoriously fickle about the software it approves for sale. Some co

Apple's App Store review team is notoriously fickle about the software it approves for sale. Some companies have found themselves needing to tweak, change, or even totally remove certain features in order for their app to make it through the process.

Yet, somehow, a fake LastPass app made it past this very review team. Even worse, the fraudulent version of LastPass was available for weeks before it was eventually taken down, and only after it was noticed by the LastPass teamthemselves.

"LastPass would like to alert our customers to a fraudulent app attempting to impersonate our LastPass app on the Apple App Store," LastPass wrote on its company website on Wednesday. 

The statement points out that the imposter pretending to be the official LastPass app listed an individual by the name of "Parvati Patel" as its developer, instead of LastPass parent company, LogMeIn.

SEE ALSO:What are password managers and how to pick the right one

"The app attempts to copy our branding and user interface, though close examination of the posted screenshots reveal misspellings and other indicators the app is fraudulent," LastPass pointed out. Most notably, the fake LastPass app is listed as "LassPass Password Manager" — note the "Lass" in place of "Last."

Mashable Light SpeedWant more out-of-this world tech, space and science stories?Sign up for Mashable's weekly Light Speed newsletter.By signing up you agree to our Terms of Use and Privacy Policy.Thanks for signing up!

According to TechCrunch, the LastPass team reached out to Apple to find out more about how "LassPass" survived the iPhone-maker's usually stringent App Store review process. While Apple has not provided any information publicly on this matter, the company has since removed "LassPass Password Manager" from the App Store.

It's unclear, at least for the moment, how many people fell for this scam, just as it's not yet confirmed that the fake app was a phishing attempt, though that would be the most obvious reason to masquerade as a password manager app.

An ironic time for an App Store misstep

Recently, Apple's app distribution policies have been headline news following the company's release of new rules created in response to the EU's Digital Markets Act (DMA). This new regulation was instituted in order to loosen Apple's control over how third-party apps are distributed on iPhones, allowing users to download apps on alternative marketplaces that are not bound by Apple's App Store content rules or revenue share policies.

In response, Apple engaged in what one critic called "malicious compliance," formulating new, DMA-compliant policies for these alternative marketplaces and the apps distributed on them, including scenarios in which developers potentially pay Apple morethan they would have if they just released their apps through the official App Store. Apple's move was roundly condemned by developers big and small. CEOs from companies like Xbox, Epic Games, Spotify, and even Meta's Mark Zuckerbergcriticized Apple, accusing the company of trying to profit off the DMA.

Why this so-called act of "malicious compliance"? That's the ironic part. The iPhone-maker had opposed the DMA in the first place, taking the position that its walled-garden approach with the App Store keeps consumers safe from bad actors. As TechCrunch highlights, Apple even wrote as such in its own post about its new DMA compliant rules.

"The new options for processing payments and downloading apps on iOS open new avenues for malware, fraud and scams, illicit and harmful content, and other privacy and security threats," Apple saidin its Jan. 25 blog post. And yet, at the time Apple released that statement, "LassPass Password Manager" was already available for download in the official App Store, having been approved four days earlier.

1.本站遵循行业规范,任何转载的稿件都会明确标注作者和来源;2.本站的原创文章,请转载时务必注明文章作者和来源,不尊重原创的行为我们将追究责任;3.作者投稿可能会经我们编辑修改或补充。

相关文章
  • LG Display starts production of advanced OLED displays for gaming

    LG Display starts production of advanced OLED displays for gaming

    2024-09-23 09:03

  • Two minor natural quakes hit N. Korea's eastern region: KMA

    Two minor natural quakes hit N. Korea's eastern region: KMA

    2024-09-23 08:03

  • 市创新创业孵化中心举办企业成果展

    市创新创业孵化中心举办企业成果展

    2024-09-23 08:00

  • New FM bets on firm relations with Washington for Pyongyang’s denuclearization

    New FM bets on firm relations with Washington for Pyongyang’s denuclearization

    2024-09-23 07:36

网友点评