City
Epaper

New malware 'SharkBot' attacking banking apps on Android phones

By IANS | Updated: November 16, 2021 17:25 IST

New Delhi, Nov 16 Cybersecurity researchers have discovered a new Android Trojan that can circumvent multi-factor authentication on ...

Open in App

New Delhi, Nov 16 Cybersecurity researchers have discovered a new Android Trojan that can circumvent multi-factor authentication on banking apps on smartphones, putting users' financial data and money at risk.

Called 'SharkBot', the Android malware has been found in attacks across Europe and the US, focused on stealing funds from mobile phones running the Google Android operating system.

"The main goal of SharkBot is to initiate money transfers from the compromised devices via Automatic Transfer Systems (ATS) technique bypassing multi-factor authentication mechanisms," the researchers from cyber security firm Cleafy said in a statement.

"These mechanisms are used to enforce users' identity verification and authentication, and are usually combined with behavioural detection techniques to identify suspicious money transfers," the team added.

'SharkBot' appears to have a very low detection rate by antivirus solutions since multiple anti-analysis techniques have been implemented.

"Once SharkBot is successfully installed in the victim's device, attackers can obtain sensitive banking information through the abuse of Accessibility Services, such as credentials, personal information, current balance, etc., but also to perform gestures on the infected device," the researchers informed.

'SharkBot' belongs to a "new" generation of mobile malware, as it is able to perform ATS attacks inside the infected device.

This technique has already been seen recently from other banking trojans, such as Gustuff.

ATS (Automatic Transfer System) is an advanced attack technique (fairly new on Android) which enables attackers to auto-fill fields in legitimate mobile banking apps and initiate money transfers from the compromised devices.

The malicious app is installed on the users' devices using both the side-loading technique and social engineering schemes, the report said.

Disclaimer: This post has been auto-published from an agency feed without any modifications to the text and has not been reviewed by an editor

Tags: Automatic transmission fluidusgoogleNew DelhiWord on macThe new delhi municipal councilWho dgDelhi south-westMicrosoft incUs google & youtubeSk dua
Open in App

Related Stories

InternationalFlorida Shooting: US Rapper Offset Injured at Seminole Hard Rock Hotel & Casino in Hollywood; Two Detained

InternationalMajid Khademi Death: IRGC Intel Chief Killed in US-Israel Attack, Confirms Iran

TechnologyIPL 2026 Google Doodle: Search Engine Giant Rolls Out Neon-Themed Doodle to Celebrate Start of Indian Premier League

InternationalLaGuardia Airport Plane Accident: At Least 2 Killed, Several Injured After Air Canada Express CRJ-900 Collides With Fire Truck on Runway

InternationalUS-Israel-Iran War: Japan, Germany, France Show Caution Over Trump’s Strait of Hormuz Warship Plan

National Realted Stories

National"Despite global turmoil, India continues to move forward on its journey of progress": CM Yogi Adityanath

NationalConspirators won’t harm India if Sanatanis unite: CM Yogi

NationalCM Majhi calls budget key to Odisha's long-term development

National"If action is being taken against infiltrators, why does Mamata Banerjee feel pain"?: BJP MP Kangana Ranaut

NationalBye-election between the poor and the rich, Cong will lose: Karnataka BJP