facebook webinject

iBanking Trojan bypasses two-factor authentication and runs free

The iBanking είναι ένα banking Trojan που έρχεται μεταμφιεσμένο σε μια εφαρμογή ασφαλείας για συσκευές Android. Το Trojan διανέμεται μέσω  .

facebook-webinject

Recently, the source code of the Trojan was leaked online through an underground forum, which gave an opportunity to many cybercriminals to launch attacks using this .

The iBanking malware, once installed on a victim's phone, can spy on the user's communications. The bot allows an attacker to send SMS, redirect calls to any predefined phone number, record sounds using the device's microphone and steal other sensitive data such as call history and phonebook contacts.

According to a new report by its security researchers ESET, iBanking Trojan (Android / Spy.Agent.AF) is targeting Facebook users to trick them into downloading malware.

Malware uses an attack method   to create a fake Facebook verification page and trick social network users like the one shown below:

iBanking-facebook-malware
False verification page prompts users to enter their mobile number to verify the authenticity of their Facebook account and then shows the following page if the victim's mobile is running Android.

iBanking-facebook-malware 1
The next fake page asks the victim to download an Android app from a QR code or by using an SMS if for some reason he is unable to download it. Once downloaded and installed, the malware connects to the administration server and which allows attackers to give it commands to execute on any infected device.
Since many banking sites use two-factor authentication and transaction licensing systems to avoid various threats, criminals began to develop malware such as iBanking to bypass two-factor authentication.

The iBanking Trojan can be used in conjunction with any malware to do malicious code on a web page and is generally used to redirect the incoming SMS messages of the infected device.

It is always important to download third-party applications only from trusted sources. You can do this simply by setting the menu / Applications / and turning off "unknown sources".

iGuRu.gr The Best Technology Site in Greecefgns

every publication, directly to your inbox

Join the 2.087 registrants.

Written by giorgos

George still wonders what he's doing here ...

Leave a reply

Your email address is not published. Required fields are mentioned with *

Your message will not be published if:
1. Contains insulting, defamatory, racist, offensive or inappropriate comments.
2. Causes harm to minors.
3. It interferes with the privacy and individual and social rights of other users.
4. Advertises products or services or websites.
5. Contains personal information (address, phone, etc.).