Close Menu
CatchTheBullCatchTheBull
  • Home
  • Crypto News
  • Bitcoin
  • Altcoin
  • Blockchain
  • Airdrops News
  • NFT News
What's Hot

US government transfers seized Bitcoin linked to steroid probe

April 11, 2026

AAVE Price Prediction: Targets $108 by April 13th Amid Mixed Technical Signals

April 11, 2026

Android Flaw Leaves 30 Million Crypto Wallets Open To Attack: Microsoft Analysts

April 11, 2026
Facebook X (Twitter) Instagram
Facebook X (Twitter) Instagram
CatchTheBullCatchTheBull
  • Home
  • Crypto News
  • Bitcoin
  • Altcoin
  • Blockchain
  • Airdrops News
  • NFT News
CatchTheBullCatchTheBull
Bitcoin

Android Flaw Leaves 30 Million Crypto Wallets Open To Attack: Microsoft Analysts

By WebDeskApril 11, 20263 Mins Read
Android Flaw Leaves 30 Million Crypto Wallets Open To Attack: Microsoft Analysts
Share
Facebook Twitter LinkedIn Pinterest Email

Trusted Editorial content, reviewed by leading industry experts and seasoned editors. Ad Disclosure

A patch has been available for nearly a year, but millions of Android users may still be running vulnerable crypto wallet apps — leaving their funds and private keys exposed to a known security flaw.

Microsoft’s Defender Security Research Team went public last week with details of a vulnerability it first caught in April 2025. The flaw lived inside a widely used software component called the EngageLab SDK, version 4.5.4.

Because that SDK is baked into thousands of Android apps, a single malicious app could trigger a chain reaction that reached far beyond itself.

How The Attack Works

The method is called “intent redirection.” An attacker’s app sends a specially crafted message to any app running the flawed SDK version. Once that message lands, the targeted app is tricked into handing over read and write access to its own data — including stored seed phrases and wallet addresses.

Source: Microsoft

Android’s built-in sandbox system, which normally keeps apps from seeing each other’s data, was bypassed entirely. According to Microsoft, the attack affected more than 50 million apps across the Android ecosystem, with roughly 30 million of those being crypto wallets.

The vulnerability did not require the user to do anything wrong. No suspicious links. No phishing pages. Just having the wrong apps installed at the same time was enough.

Source: Microsoft

Response From Microsoft And Google

Microsoft moved quickly after its discovery. By May 2025, the company had brought Google and the Android Security Team into the response. EngageLab released a fixed version — SDK 5.2.1 — shortly after.

Reports indicate that both Microsoft and Google have since directed users on how to verify whether their wallet apps have been updated through Google Play Protect.

BTCUSD trading at $72,906 on the 24-hour chart: TradingView

Officials also pointed to a broader concern: apps installed as APK files from outside the Play Store are at higher risk, since they bypass the security checks that Google applies to apps listed in its official marketplace.

What Users Should Do Now

For most users who update their apps regularly, the risk has likely passed. But for anyone who has not updated since mid-2025, the recommended action goes beyond a simple app refresh.

Security teams are advising those users to move their funds into entirely new wallets, generated with fresh seed phrases. Any wallet that was active and unpatched during the exposure window should be treated as potentially compromised.

The disclosure comes alongside a separate Android chip vulnerability flagged the previous month and a new US Treasury initiative that pairs government agencies with crypto firms to share cybersecurity threat information — a sign that mobile security in the crypto space is drawing attention at the highest levels.

Featured image from Bleeping Computer, chart from TradingView

Editorial Process for bitcoinist is centered on delivering thoroughly researched, accurate, and unbiased content. We uphold strict sourcing standards, and each page undergoes diligent review by our team of top technology experts and seasoned editors. This process ensures the integrity, relevance, and value of our content for our readers.

Credit: Source link

Previous ArticleWill SEC Clarity Act Talks Trigger a Rally?
Next Article AAVE Price Prediction: Targets $108 by April 13th Amid Mixed Technical Signals

Related Posts

US government transfers seized Bitcoin linked to steroid probe

April 11, 2026

XRP Could Rally Near $20 After Breakout Signal Originating In 2017, Analyst Says

April 11, 2026

Senators Probe Trump Token Activity as Political and Financial Risks Emerge – Featured Bitcoin News

April 11, 2026
Add A Comment
Leave A Reply Cancel Reply

Top Posts

US government transfers seized Bitcoin linked to steroid probe

April 11, 2026

AAVE Price Prediction: Targets $108 by April 13th Amid Mixed Technical Signals

April 11, 2026

Android Flaw Leaves 30 Million Crypto Wallets Open To Attack: Microsoft Analysts

April 11, 2026

Subscribe to Updates

Get the latest Crypto, Blockchain and Airdrop News from us to Catch The Bull.

Advertisement Banner

Welcome to CatchTheBull, your trusted source for the latest Crypto News and Airdrops. We bring you real-time updates, expert insights, and opportunities to stay ahead in the crypto world. Discover trending projects, market analyses, and airdrop details all in one place.

Join us on this journey to navigate the ever-evolving blockchain universe!

Facebook X (Twitter) Instagram YouTube
Top Insights

Is Your Crypto Safe? Microsoft Discloses Android Vulnerability Exposing 30M Wallets

Anthropic Warns AI-Powered Cyberattacks Will Surge Within 24 Months

Here’s Why The Dogecoin Price Is Under Threat Of Crashing Again

Get Informed

Subscribe to Updates

Get the latest Crypto, Blockchain and Airdrop News from us to Catch The Bull.

© 2026 CatchTheBull. All Rights Are Reserved.
  • Contact Us
  • Privacy Policy
  • Terms of Use
  • DMCA

Type above and press Enter to search. Press Esc to cancel.

  • bitcoinBitcoin(BTC)$72,728.00-0.07%
  • ethereumEthereum(ETH)$2,242.90-0.03%
  • tetherTether(USDT)$1.000.02%
  • rippleXRP(XRP)$1.35-0.01%
  • binancecoinBNB(BNB)$605.31-0.02%
  • usd-coinUSDC(USDC)$1.000.01%
  • solanaSolana(SOL)$84.32-0.29%
  • tronTRON(TRX)$0.318276-0.01%
  • Figure HelocFigure Heloc(FIGR_HELOC)$1.02-1.23%
  • dogecoinDogecoin(DOGE)$0.092693-0.57%
  • USDSUSDS(USDS)$1.00-0.02%
  • whitebitWhiteBIT Coin(WBT)$53.010.01%
  • HyperliquidHyperliquid(HYPE)$42.280.90%
  • leo-tokenLEO Token(LEO)$10.11-0.44%
  • cardanoCardano(ADA)$0.249021-1.40%
  • bitcoin-cashBitcoin Cash(BCH)$439.92-0.77%
  • chainlinkChainlink(LINK)$9.00-0.81%
  • moneroMonero(XMR)$337.95-2.12%
  • zcashZcash(ZEC)$372.50-1.15%
  • Ethena USDeEthena USDe(USDE)$1.000.01%
  • CantonCanton(CC)$0.146191-2.28%
  • stellarStellar(XLM)$0.154160-0.58%
  • MemeCoreMemeCore(M)$2.753.03%
  • daiDai(DAI)$1.000.09%
  • litecoinLitecoin(LTC)$54.53-0.77%
  • USD1USD1(USD1)$1.000.00%
  • paypal-usdPayPal USD(PYUSD)$1.00-0.01%
  • avalanche-2Avalanche(AVAX)$9.27-1.32%
  • RainRain(RAIN)$0.008025-0.88%
  • hedera-hashgraphHedera(HBAR)$0.088532-0.46%
  • suiSui(SUI)$0.93-0.79%
  • the-open-networkToncoin(TON)$1.409.25%
  • shiba-inuShiba Inu(SHIB)$0.000006-0.31%
  • crypto-com-chainCronos(CRO)$0.069435-0.58%
  • Circle USYCCircle USYC(USYC)$1.120.00%
  • tether-goldTether Gold(XAUT)$4,724.87-0.69%
  • BittensorBittensor(TAO)$266.080.48%
  • World Liberty FinancialWorld Liberty Financial(WLFI)$0.079258-1.45%
  • BlackRock USD Institutional Digital Liquidity FundBlackRock USD Institutional Digital Liquidity Fund(BUIDL)$1.000.00%
  • pax-goldPAX Gold(PAXG)$4,731.87-0.78%
  • mantleMantle(MNT)$0.681.19%
  • polkadotPolkadot(DOT)$1.28-1.77%
  • Global DollarGlobal Dollar(USDG)$1.00-0.01%
  • uniswapUniswap(UNI)$3.14-0.70%
  • SkySky(SKY)$0.077651-0.12%
  • Falcon USDFalcon USD(USDF)$1.00-0.09%
  • okbOKB(OKB)$85.050.62%
  • nearNEAR Protocol(NEAR)$1.36-1.03%
  • Pi NetworkPi Network(PI)$0.167144-0.83%
  • AsterAster(ASTER)$0.670.52%