Daily Banking News
$42.39
-0.38%
$164.24
-0.07%
$60.78
+0.07%
$32.38
+1.31%
$260.02
+0.21%
$372.02
+0.18%
$78.71
-0.06%
$103.99
-0.51%
$76.53
+1.19%
$2.81
-0.71%
$20.46
+0.34%
$72.10
+0.28%
$67.30
+0.42%

Scary new Android malware is stealing bank logins in these 5 regions – BGR


For all the digital threats that are circulating at any given time, including everything from credential-stealing malware to malicious code that bombards the end user with annoying ads and pop-ups, among the scariest and potentially most destructive are the threats that target victims’ banks and financial institutions.

We’ve reported on a number of such threats, including malware that steals login credentials to drain victim bank accounts. And now, another similar piece of Android malware has been identified by security researchers, who in recent days warned that this malware (which has been dubbed “TeaBot”) can take actions like live streaming the target device screen for the benefit of the attackers. It can also hijack login credentials and text messages in order to engage in fraudulent bank activity.

Today’s Top Deal Deal alert: Amazon shoppers are swarming to get this 2K camera drone that folds up as small as a smartphone List Price:$79.99 Price:$64.99 You Save:$15.00 (19%) Available from Amazon, BGR may receive a commission Buy Now Available from Amazon BGR may receive a commission

Researchers on the Threat Intelligence and Incident Response team at the cybersecurity company Cleafy identified the TeaBot Android banking Trojan back in January. This threat’s main goal, they found, is to steal the victim’s credentials and SMS messages to enable fraud scenarios against a list of banks in European regions including Spain, Germany, Italy, Belgium, and the Netherlands. “Once TeaBot is successfully installed in the victim’s device, attackers can obtain a live streaming of the device screen (on demand) and also interact with it via Accessibility Services,” the Cleafy team explained in a technical analysis about the threat.

Among the actions TeaBot is able to take, this threat:

  • Has the ability to perform overlay attacks against multiple banks applications to steal login credentials and credit card information
  • Can send, intercept, and hide SMS messages
  • Enables key logging functionalities
  • Has the ability to steal Google Authentication codes
  • And has the ability to obtain full remote control of an Android device, via Accessibility Services and real-time screen-sharing)

When TeaBot was initially discovered, it was found to focus only on Spanish banks. However, according to the Cleafy team, new samples of TeaBot started showing up in March that targeted German and Italian banks for the first time. Moreover, TeaBot currently supports several different languages, including Spanish, English, Italian, German, French, and Dutch.

In explaining how dangerous a piece of malware this is, Saumitra Das, CTO of cybersecurity firm Blue Hexagon, told ZDNet that it proves once again how “threat actors realize the true potential of mobile devices and the threat they can pose to the end-user.”

“It is important to remember that even though the apps are not on Google Play, the phishing/social engineering tactics used by the actors behind TeaBot/Flubot are as good as any threat family on the PC side. That within a short time frame, they can manage to get a huge infection base. These threats should not be underestimated.”

Today’s Top Deal Amazon shoppers are obsessed with these Wi-Fi smart plugs – get them for just $4.72 each! List Price:$26.99 Price:$18.89 You Save:$8.10 (30%) Available from Amazon, BGR may receive a commission Buy NowCoupon Code: ECHE76M7 Available from Amazon BGR may receive a commission

Andy is a reporter in Memphis who also contributes to outlets like Fast Company and The Guardian. When he’s not writing about technology, he can be found hunched protectively over his burgeoning collection of vinyl, as well as nursing his Whovianism and bingeing on a variety of TV shows you probably don’t…



Read More: Scary new Android malware is stealing bank logins in these 5 regions – BGR

Get real time updates directly on you device, subscribe now.

Subscribe
Notify of
guest
0 Comments
Inline Feedbacks
View all comments

Get more stuff like this
in your inbox

Subscribe to our mailing list and get interesting stuff and updates to your email inbox.

Thank you for subscribing.

Something went wrong.