chiprook
← Security
SecuritySeptember 25, 2026, 17:00

CERT Polska links 17 Android apps via a reused TLS certificate

A CERT Polska report dated 23 September 2026 describes linking applications through registration records, DNS structure, object naming and a reused TLS certificate. Six apps contained toll fraud components, 11 more had malicious loaders, and 98 ads point only to advertiser account reuse.

CERT Polska links 17 Android apps via a reused TLS certificate
#Android#CERTPolska#ZoomEye
Read next
Security

CERT Polska: Meta ads funneled Polish users into premium-rate billing scam

Software

Android 17 adds Certificate Transparency checks for TLS certificates

Security

CVE-2026-8932: curl/libcurl mTLS connection reuse flaw

Security

Study: 154 users logged into 26 sites with fewer than 10 passwords, ~60% reused