23 May 2018

Korean banks under siege from Android malware

27 June 2014  |  9457 views  |  0 web spider

Banking Trojans masquerading as Android mobile apps are spreading like wildfire through the smartphones of Korean users, with up to 100,000 devices so far infected.

The Security Research Lab of Cheetah Mobile says the Trojan pretends to be a popular game or tool on one of the many third party Android markets in Korea with the intention of tricking the user into downloading it.

After installation, the virus searches for banking apps on the phone and alerts the user to a bogus update. Once the update is approved, the official app gets deleted and is replaced with a convincing copy. It then asks for the password for the user's security certificate, which is required by the South Korean government in order to access official online services in the country.

The fake app then proceeds to ask for the user's personal banking data - including account numbers, passwords and card security data - before closing with the message "No Wi-Fi connection. Use 3G or try to connect to the W-Fi again." The malware then shuts down the application and proceeds to remove all traces of itself from the device.

More than 2000 variations of the malware have been detected by CM Security researchers, with more than 3000 Korean smartphones infected in the last week alone.
KeywordsCARD FRAUD

Comments: (0)

Comment on this story (membership required)

Finextra news in your inbox

For Finextra's free daily newsletter, breaking news flashes and weekly jobs board: sign up now

Related stories

Ransomware moves to the mobile - and it's after your banking data

Ransomware moves to the mobile - and it's after your banking data

17 June 2014  |  6236 views  |  0 comments | 9 tweets | 5 linkedin
Cat pics prove hazardous to online bank accounts

Cat pics prove hazardous to online bank accounts

04 March 2014  |  8196 views  |  3 comments | 15 tweets | 8 linkedin
Researchers find more than 100 malware families targeting bitcoin

Researchers find more than 100 malware families targeting bitcoin

27 February 2014  |  7331 views  |  1 comments | 8 tweets | 3 linkedin
Cyber-crime cops bust malware ring behind £1 million bank thefts

Cyber-crime cops bust malware ring behind £1 million bank thefts

11 December 2013  |  5807 views  |  0 comments | 8 tweets | 5 linkedin
Mobile payments expansion spawning criminal undergound

Mobile payments expansion spawning criminal undergound

16 May 2013  |  9859 views  |  2 comments | 9 tweets | 3 linkedin
Banks must wake up to mobile virus threat - Ovum

Banks must wake up to mobile virus threat - Ovum

06 July 2010  |  13885 views  |  0 comments

Related blogs

Create a blog about this story (membership required)
Visit http://go.jumio.com/finextraAdVisit www.vasco.com/news/mobile-first

Top topics

Most viewed Most shared
PayPal agrees $2.2 billion deal for iZettlePayPal agrees $2.2 billion deal for iZettl...
9812 views comments | 16 tweets | 28 linkedin
BBVA begins global roll-out of unified mobile appBBVA begins global roll-out of unified mob...
8581 views comments | 6 tweets | 5 linkedin
Japanese banks join quantum computing hubJapanese banks join quantum computing hub
7293 views comments | 8 tweets | 5 linkedin
SEC lures wannabe crypto investors with fake ICO siteSEC lures wannabe crypto investors with fa...
6821 views comments | 7 tweets | 11 linkedin
Fidelity creates virtual reality chatbotFidelity creates virtual reality chatbot
6550 views comments | 6 tweets | 12 linkedin

Featured job

Find your next job