Why You Shouldn’t Use Pokemon Go APKs
A lot of people have attempted to download one of the many Pokemon Go APKs out there because it is not yet available in their country. With recent discoveries, you might want to think again about doing that.
Join the DZone community and get the full member experience.Join For Free
I know a lot of my friends have attempted to download one of the many Pokemon Go APKs out there because it is not yet available in their country. With recent discoveries, you might want to think again about doing that.
It has only been a matter of days since it has been released, but Pokemon Go can be proud to call itself a phenomenon. It is becoming one of the most downloaded apps of recent times. It has even surpassed Tinder on Android in the United States.
The issue right now is that the game is only available in a limited number of countries such as Japan, Australia, and the United States.
You Should Beware the APKs
People in these countries have been been reporting massive gatherings of people hunting for augmented reality Pokemon. There has been even the discovery of a body by accident. Those people in the rest of the world, where it’s not available, are anxious to get their hands on it.
Some people are so anxious that there are dozens of mirrored versions of the app appearing in the Android operating system — also known as Android Application Packages (APKs) — that offer the game to people outside of the countries that are officially released.
Without a doubt or thinking twice about it, they have proven to be really popular, but like any tending app that people are eager to get their hands on, people have been taking advantage of them.
According to the Security Research firm called ProofPoint, there is at least one Pokemon Go APK out there that, when downloaded onto an Android smartphone, provides a backdoor for hackers to gain remote access.
Just a Heads Up
This is called Droidjack. The malware has been in existence for a good while now, but this one discovery of an APK coded with ti shows that users are potentially vulnerable to being taken advantage of when new apps come out with a high trending rate.
At least, in order for someone to download it, the owner of the device needs to turn off a security feature that prevents software not found and trusted on the Google Play Store from being downloaded.
However, in this instance, anyone who has downloaded the APK and now fearful that their smartphone may be infected can rest a little bit easier. The malware-infected version found by ProofPoint was not out in the wild. There are no reports of infections yet.
Additionally, the information extracted from a server appears to be located in Turkey. Yet it looks like it was not accepting any information during the testing.
This is a case which acts as a warning for eager people in the rest of the world. If people are afraid that they may have downloaded a malicious version, there is a really simple check to make sure that they didn’t.
There Are Only a Few Days More
While not downloading any of these APKs might be the right choice, those who have may want to check the permissions of the app they granted the app to have. The immediate flags to check are the ones that request access to your connectivity and messaging.
This information can be easily access in the
Settings, followed by
Apps, then finally tapping on the
Pokemon Go app.
The Security Firm said anybody looking to download the APK:
Just because you can get the latest software on your device does not mean that you should. Instead, downloading available applications from legitimate app stores is the best way to avoid compromising your device and the networks it accesses.
This may just remain as a small threat in for the moment, the real damage has been already caused by a group of teenagers in the United states who were allegedly found to be using the app to lure players to a location to steal their possessions.
Published at DZone with permission of Traven West, DZone MVB. See the original article here.
Opinions expressed by DZone contributors are their own.