An Android malware is targeting over 232 banking apps including a few banks in India. The Trojan malware, named 'Android.banker.A9480', is designed to steal personal data from users.
Android.banker.A9480 malware gets circulated via a fake Flash Player app on third-party stores, Quick Heal said.
Once users download the malicious application, they get several prompts to activate administrative rights. The app sends numerous pop-ups to victims until the administrative privileges are activated, the report added.
Once the app is installed the icon hides and keep working in background and keep checking for one of the 232 banking apps .If the app finds one of the targeted apps, it sends a fake notification that resembles the banking app. When users open the notification, they get a fake login window that is then used by the attackers to extract confidential data like login ID and password.
The malware can intercept incoming and outgoing SMS from an infected smartphone, it is also able to bypass the OTP based two-factor authentication on the user's bank account.
Comments
Post a Comment