TE
TechEcho
Home24h TopNewestBestAskShowJobs
GitHubTwitter
Home

TechEcho

A tech news platform built with Next.js, providing global tech news and discussions.

GitHubTwitter

Home

HomeNewestBestAskShowJobs

Resources

HackerNews APIOriginal HackerNewsNext.js

© 2025 TechEcho. All rights reserved.

Fake LastPass password manager spotted on Apple's App Store

63 pointsby chromateover 1 year ago

7 comments

tailspin2019over 1 year ago
How, in the utter fuck, does this get past app review?<p>It’s not like it’s an edge case either, there are hundreds of apps with obviously and blatantly misleading logos, brands, names etc. Just see ChatGPT &#x2F; OpenAi for example.<p>I have taken to sharing direct links to Apps in the app store now when recommending things to non-technical friends&#x2F;family, because I’ve lost all confidence that they will find the “correct” app anymore just by searching, and not one of hundreds of highly dubious clone apps.<p>Difficult to argue against the recent actions of the EU when the supposed benefits of the walled garden are crumbling anyway…
评论 #39309304 未加载
评论 #39308409 未加载
评论 #39309107 未加载
评论 #39307289 未加载
评论 #39307999 未加载
评论 #39309338 未加载
phmqk76over 1 year ago
Apple: Our devices must remain walled gardens so only the highest quality, legitimate apps are able to be installed. And we require a 30% rent on every transaction for the purpose of maintaining the integrity of our garden.<p>Also Apple: <i>Lets in thousands of scam apps as a matter of course</i>
sccxyover 1 year ago
But Apple said their App Store is so safe that you do not need to worry about these kind of scams
评论 #39307049 未加载
chrisjjover 1 year ago
&gt;&gt; close examination of the posted screenshots reveal misspellings and other indicators the app is fraudulent<p>Misspellings indicate fraud?? Good grief.
评论 #39308027 未加载
fsniperover 1 year ago
Isn&#x27;t this the &quot;App Store&quot; that they are gate keeping for this kinds of threats?
评论 #39307328 未加载
DougN7over 1 year ago
This is my biggest fear - that my password app is hacked. What if the real LastPass (or KeePass, or whatever) dev had a gun held to his head to add code to upload credentials to somewhere, and then signs and uploads the legitimate app. Open source doesn’t help - dev just doesn’t check in the changes. Reproducible builds and open source help in theory, but how many people go to that length if it’s even possible? I don’t.
chrisjjover 1 year ago
&gt; LastPass is warning that a fake copy of its app is being distributed on the Apple App Store<p>Fake news. LastPass&#x27;s warning does not claim the other app is a fake copy.
评论 #39307822 未加载