this is particularly easy to do with a malicious keyboard app on Android, I think.
A countermeasure might be enforcing that the standard system keyboard is in use, or avoiding having the user type in data relevant to their transactions, such as their backup mnemonic.
this is particularly easy to do with a malicious keyboard app on Android, I think.
A countermeasure might be enforcing that the standard system keyboard is in use, or avoiding having the user type in data relevant to their transactions, such as their backup mnemonic.
Referernce: https://medium.com/@paullinator/why-a-12-word-mnemonic-is-an-insecure-bitcoin-wallet-backup-d56085da6c8d#.asyvg5yhg