24 August 2017
Find out more

Korean banks under siege from Android malware

27 June 2014  |  9159 views  |  0 web spider

Banking Trojans masquerading as Android mobile apps are spreading like wildfire through the smartphones of Korean users, with up to 100,000 devices so far infected.

The Security Research Lab of Cheetah Mobile says the Trojan pretends to be a popular game or tool on one of the many third party Android markets in Korea with the intention of tricking the user into downloading it.

After installation, the virus searches for banking apps on the phone and alerts the user to a bogus update. Once the update is approved, the official app gets deleted and is replaced with a convincing copy. It then asks for the password for the user's security certificate, which is required by the South Korean government in order to access official online services in the country.

The fake app then proceeds to ask for the user's personal banking data - including account numbers, passwords and card security data - before closing with the message "No Wi-Fi connection. Use 3G or try to connect to the W-Fi again." The malware then shuts down the application and proceeds to remove all traces of itself from the device.

More than 2000 variations of the malware have been detected by CM Security researchers, with more than 3000 Korean smartphones infected in the last week alone.
KeywordsCARD FRAUD

Comments: (0)

Comment on this story (membership required)

Finextra news in your inbox

For Finextra's free daily newsletter, breaking news flashes and weekly jobs board: sign up now

Related stories

Ransomware moves to the mobile - and it's after your banking data

Ransomware moves to the mobile - and it's after your banking data

17 June 2014  |  5947 views  |  0 comments | 9 tweets | 5 linkedin
Cat pics prove hazardous to online bank accounts

Cat pics prove hazardous to online bank accounts

04 March 2014  |  7731 views  |  3 comments | 15 tweets | 8 linkedin
Researchers find more than 100 malware families targeting bitcoin

Researchers find more than 100 malware families targeting bitcoin

27 February 2014  |  6844 views  |  1 comments | 8 tweets | 3 linkedin
Cyber-crime cops bust malware ring behind £1 million bank thefts

Cyber-crime cops bust malware ring behind £1 million bank thefts

11 December 2013  |  5527 views  |  0 comments | 8 tweets | 5 linkedin
Mobile payments expansion spawning criminal undergound

Mobile payments expansion spawning criminal undergound

16 May 2013  |  9585 views  |  2 comments | 9 tweets | 3 linkedin
Banks must wake up to mobile virus threat - Ovum

Banks must wake up to mobile virus threat - Ovum

06 July 2010  |  13724 views  |  0 comments

Related blogs

Create a blog about this story (membership required)
download the paper nowvisit www.dorsum.euvisit www.vasco.com

Top topics

Most viewed Most shared
Rabobank constructs physical model to understand IT architectureRabobank constructs physical model to unde...
20757 views comments | 43 tweets | 86 linkedin
Barclays pairs banking data with third party apps for SmartBusiness DashboardBarclays pairs banking data with third par...
12013 views comments | 22 tweets | 35 linkedin
Australia regulates digital currenciesAustralia regulates digital currencies
11318 views comments | 21 tweets | 35 linkedin
RBS to bring Silicon Valley to EdinburghRBS to bring Silicon Valley to Edinburgh
11151 views comments | 10 tweets | 8 linkedin
hands typing furiouslyWhy Is Risk Analytics Important?
10848 views 0 | 7 tweets | 1 linkedin

Featured job

Find your next job