eSIM Plus and Nicegram Share Belarus-Linked Codebase, Analysis Finds
Overview
A recent analysis revealed that eSIM Plus and Nicegram, two popular applications marketed as Lithuanian products, share a codebase linked to Belarus. eSIM Plus, which has over 1 million downloads, routes its data and calls through Russian services, raising concerns about user privacy and data security. Nicegram is even more widely used, boasting over 50 million downloads. The findings were reported by the Mysterium VPN Research Team, who emphasized the potential risks for users in the EU and beyond. This situation highlights the need for users to be cautious about the applications they choose, especially those that may have ties to countries with questionable cybersecurity practices.
Key Takeaways
- Affected Systems: eSIM Plus, Nicegram
- Action Required: Users should consider uninstalling these applications and seek alternatives that do not have questionable ties to potentially hostile states.
- Timeline: Newly disclosed
Original Article Summary
Analysis found eSIM Plus and Nicegram share a Belarus-linked codebase, while eSIM Plus routes data and calls through Russian services. Two popular apps available in EU app stores, Nicegram, with over 50 million downloads, and eSIM Plus, with over 1 million, are presented to users as Lithuanian products. The Mysterium VPN Research Team pulled apart […]
Impact
eSIM Plus, Nicegram
Exploitation Status
No active exploitation has been reported at this time. However, organizations should still apply patches promptly as proof-of-concept code may exist.
Timeline
Newly disclosed
Remediation
Users should consider uninstalling these applications and seek alternatives that do not have questionable ties to potentially hostile states.
Additional Information
This threat intelligence is aggregated from trusted cybersecurity sources. For the most up-to-date information, technical details, and official vendor guidance, please refer to the original article linked below.