Skip to main content

CERT-In Says Mobile Banking Android Malware 'EventBot' Horsing Around in Cyberspace

A mobile banking malware called "EventBot", which steals personal financial information, may affect Android phone users in India, the federal cyber-security agency has said in a latest advisory.
The CERT-In has issued a caution, saying the Trojan virus may "masquerade as a legitimate application such as Microsoft Word, Adobe Flash, and others using third-party application downloading sites to infiltrate into victim device".
A Trojan is a virus or malware that cheats a victim to stealthily attack its computer or phone-operating system.
"It has been observed that a new Android mobile malware named EventBot is spreading.
"It is a mobile-banking Trojan and info-stealer that abuses Android''s in-built accessibility features to steal user data from financial applications, read user SMS messages and intercept SMS messages, allowing malware to bypass two-factor authentication," the CERT-In advisory said.
The Computer Emergency Response Team of India (CERT-In) is the national technology arm to combat cyber attacks and guard the Indian cyber space.
"EventBot", it said, targets over 200 different financial applications, including banking applications, money-transfer services, and cryptocurrency wallets, or financial applications based in the US and Europe region at the moment but some of their services may affect Indian users as well.
The virus "largely targets financial applications like Paypal Business, Revolut, Barclays, UniCredit, CapitalOne UK, HSBC UK, TransferWise, Coinbase, paysafecard etc.," the CERT-In said.
The agency said while "EventBot" has not been "seen" on Google Play Store till now, it can "masquerade" as a genuine mobile phone application.
"Once installed on victim''s Android device, it asks permissions such as controlling system alerts, reading external storage content, installing additional packages, accessing Internet, whitelisting it to ignore battery optimisation, prevent processor from sleeping or dimming the screen, auto-initiate upon reboot, receive and read SMS messages, and continue running and accessing data in the background," the advisory explained.
The virus further prompts the users to give access to their device accessibility services.
"Also, it can retrieve notifications about other installed applications and read contents of other applications.

"Over the time, it can also read Lock Screen and in-app PIN that can give attacker more privileged access over victim device," the advisory said.
The cyber-security agency has suggested certain counter-measures to check the virus infection into Android phones:
"Do not download and install applications from untrusted sources like unknown websites and links on unscrupulous messages; install updated anti-virus solution; prior to downloading or installing apps (even from Google Play Store), always review the app details, number of downloads, user reviews, comments, and the ''additional information'' section.
Exercise caution while visiting trusted/un-trusted sites for clicking links; install Android updates and patches as and when available; users are advised to use device encryption or encrypting external SD card feature available with most of the Android operating system."
It also asked users to avoid using unsecured, unknown Wi-Fi networks and for prior confirming of a banking/financial app from the source organisation.
"Make sure you have a strong artificial intelligence (AI) powered mobile antivirus installed to detect and block this kind of tricky malware if it ever makes its way onto your system," the advisory states.

Comments

Popular posts from this blog

Top Best Recycle Bin Apps For Android in 2020

Just like on desktop computers, we store tons of valuable data on our smartphones, including images, videos, documents, etc. However, what if you accidentally delete some precious data from your smartphone? On a desktop computer, we get the option of ‘Recycle Bin’ which allows users to recover accidentally deleted files and folders. However, on Android, the ‘Recycle Bin’ feature is missing. That means, there’s no option to recover files after being deleted. What if I tell you that you can add the ‘Recycle Bin’ feature on your Android device? There are lots of Android recycle bin apps available on the Google Play Store which can be used to secure data from being accidentally deleted by yourself or any other person. 10 Best Recycle Bin Apps For Android in 2020 So, in this article, we are going to share some of the best Android recycle bin app that you can use right now. These apps will help you recover accidentally deleted files. So, let’s check out the best An...

Redmi 9 Specifications Tipped by US FCC Site Listing Ahead of Launch

Redmi 9 launch has so far been a mystery. Xiaomi seems to have received a certification from the US Federal Communications Commission (FCC) for a smartphone with a model number M2004J19G that is so far believed to be the Redmi 9. The certification, which has been listed online, suggests some of the Redmi 9 specifications. It also shows that the new Redmi phone runs MIUI 11, hinting at Android 10 support out-of-the-box. The new development comes just days after Xiaomi's RF exposure webpage suggested the existence of the Redmi 9. As per the documents available on the FCC site, the Redmi phone carrying the model number M2004J19G has received the certification on May 1. This suggests that the new phone would debut soon. Redmi 9 specifications (expected) In addition to the certification date, the FCC listing shows the key specifications of the Redmi phone with the model number M2004J19G that has so far been in the news as the Redmi 9, as initially reported by tec...

Samsung Galacy A6 Plus Now Starts Getting Android 10 One UI 2.0 Update | Latest News For Samsung Users

-: Samsung Galacy A6+ Now Starts Getting Android 10 One UI 2.0 Update | Latest News For Samsung Users :- Samsung galaxy A6+ has recently started receiving latest ANDROID 10 one UI 2.0 update.    Samsung galaxy A6+ was launched back in the year 2018 has finally found to be receiving the latest Android 10 with one UI 2.0 update. The update was first launched in Poland & now rolled out for everyone. If you are having SAMSUNG GALAXY A6+ then you must be waiting for the update since a long but now the time has come to update your smartphone.  To update your smartphone please open your phone setting and search for system updates. Make sure your mobile should have 70% or more battery during the update & don't get panic as the phone could turn off 7 onn several time. One day back we informed you about SAMSUNG GALAXY A10s Update which also received same update. If you haven't checked out that then visit the link below. https://www.theindiantechgu...