If you have this VPN app on your phone delete it immediately!

With 100 million installations, SuperVPN is very popular but it also has critical vulnerabilities that makes it very dangerous. Reported by TechRadar, VPNPro had reached out to Google as a part of its Google Play Security Reward Program on March 19 and that was when the company had validated the vulnerability.

The Google Play Store has removed SuperVPN from the platform and if you have it on your Android Phone, you should delete it right now as well.

According to VPNPro, SuperVPN (a free VPN client) is an “amazingly dangerous” app and it has critical vulnerabilities that allow for man-in-the-middle attacks. What are man-in-the-middle attacks? These vulnerabilities allow hackers to easily intercept communications and redirect users to hackers’ servers instead of the servers they are meant to.

Both Google and VPNPro tried to reach the developers behind SuperVPN – SuperSoftTech – to patch the issue but were unable to get to them. Google then removed the SuperVPN app from the Play Store on April 7.

To understand exactly HOW popular SuperVPN is, let’s put it this way – the app has about the same number of downloads as the dating app Tinder.

Why SuperVPN is so dangerous?

SuperVPN has a lot of issues. For starters, on one of the multiple SuperVPN hosts, “the package or payload of data being sent from the app ‘contained the key needed to decrypt the information’ which allowed VPNPro to replace SuperVPN server data with its own server data.

Another issue was that some of the data being sent was channelled through unsecured HTTP which is unencrypted. Basically, anyone who wants can read all your communications.

According to reports, SuperVPN had been named the third-most malware-rigged app in 2016 in an Australian research article, but the VPN continued to grow popular. And this was accomplished via blackout SEO tricks like “generating a large amount of fake reviews”.

There is a SuperVPN app listed in the Apple App Store that’s available right now that has “cheng cheng” listed as its developer. But it’s not clear whether it has the same vulnerabilities as the Android version. Regardless, we suggest you don’t download this either.

Speak Your Mind

LEAVE A REPLY

Please enter your comment!
Please enter your name here

Get in Touch

350FansLike
100FollowersFollow
281FollowersFollow
150FollowersFollow

Recommend for You

Oh hi there 👋
It’s nice to meet you.

Subscribe and receive our weekly newsletter packed with awesome articles that really matters to you!

We don’t spam! Read our privacy policy for more info.

You might also like

China launches global data security initiative as U.S. pressure...

Chinese President Xi Jinping addresses the opening ceremony of the fifth annual meeting of...

Google Pixel 3a, Pixel 3a XL discontinued before Pixel...

San Francisco: Google has confirmed it is discontinuing its mid-range smartphones Pixel 3a and...

Why Was the iPhone 12 Not Launched at the...

Apple iPhone 12 has been simmering among top searched keywords for a while. However,...

Chinese internet firms have less to lose than telcos...

Sheldon Cooper | LightRocket | Getty ImagesSINGAPORE — China's internet companies may be more insulated...