Beware: downloading that web app could infect your entire device with malware

Progressive Web Apps (PWA), a type of application delivered through a web browser, can be hijacked to be used for phishing, creating authentic-looking, compelling data collection platforms, experts warn.

Researcher mr.d0x, a notable figure in the cybersecurity community best known for creating and sharing tools and techniques useful for penetration testing, red teaming, and security research, has described developing a new phishing toolkit that allows people to use PWAs that can display company login forms and even come with a fake address bar, which shows the authentic URL, and thus looks more trustworthy.