MetaMask, the browser extension that allows users of Chrome, Firefox, Opera, and Brave to interact with Ethereum dapps, has recently been targeted by scammers who managed to get a fake version of the MetaMask app listed in the Google Play store.
The discovery of the malicious app was made public Friday by Lukas Stefanko, malware researcher with internet security firm ESET. Stefanko tweeted a link to a blog post about the malware, screenshots of the app as it appeared in the Play store, and a section of the malicious code.
In fact, MetaMask has not yet launched a mobile app, although the company announced that one was under development in November. Exploiting the expectation for a mobile product, cybercriminals created a developer profile for “Mmask Inc,” and uploaded a fake version of the MetaMask app to the Play store.
The malicious code was spotted soon after the fake version of MetaMask was uploaded to the store, and after the Google Play security team was notified the app was quickly removed.
Google and MetaMask were not immediately available for comment. The article will be updated with any response.