financetom
Business
financetom
/
Business
/
Beware of trojan malware attack, MeitY warns customers of major banks
News World Market Environment Technology Personal Finance Politics Retail Business Economy Cryptocurrency Forex Stocks Market Commodities
Beware of trojan malware attack, MeitY warns customers of major banks
Sep 23, 2021 6:41 AM

The Ministry of Electronics and Information Technology’s Computer Emergency Response Team (CERT-In) has alerted customers about a new banking trojan malware that is targeting customers by sending them a fake income-tax refund-related link.

Share Market Live

NSE

“It has been observed that Indian banking customers are being targeted by a new type of mobile banking campaign using Drink android malware,” said CERT-In.

Drinik initially started as a primitive SMS stealer in 2016 and now it has evolved to a banking trojan that displays a fake screen as a real one in order to persuade users to enter their bank details. Customers of more than 27 public and private sector banks have already been victims of such attacks.

CERT-In says that if any such suspicious activity is noticed by users they should immediately report with relevant details to [email protected].

How does it work?

CERT-In explained about the malware attack on its website. The post said that the victim first receives an SMS having a link to some phishing website (the link is similar to that of the Income Tax department’s website). After the customer clicks on the link, he/she is asked to enter personal information and then download the malicious APK file in order to complete the verification.

After the installation is completed, the app asks the user to grant some permissions like SMS, call logs, contacts, etc. The users are then asked to enter data like personal information including the full name, PAN Card details, Aadhaar details, address, date of birth, mobile number, email address, and other bank details like CVV number, IFSC code, etc. If the user doesn’t enter any sort of information, the same screen with the form is displayed and he/she is asked to fill in to proceed further.

After the details are entered, the application says that there is a refund amount that could be transferred to their bank account. When the user enters the refund amount and clicks on the “Transfer” option, the app shows an error and displays a fake update screen.

While the screen for installing updates is shown to the user, Trojan malware at the backend transfers all the data including the user’s SMS and call log details to the attacker’s machine. All these details are then used by attackers to show relevant mobile banking screen on the user’s device. When the user enters the mobile banking details, they are captured by the attacker.

(Edited by : Anshul)

Comments
Welcome to financetom comments! Please keep conversations courteous and on-topic. To fosterproductive and respectful conversations, you may see comments from our Community Managers.
Sign up to post
Sort by
Show More Comments
Related Articles >
Dollar a spectator to China news, yen wobbles as rate risks loom
Dollar a spectator to China news, yen wobbles as rate risks loom
Mar 4, 2024
SYDNEY (Reuters) -The dollar was steady against the yuan on Tuesday as markets digested policy statements out of China that were short on big stimulus measures, while a rebound in Tokyo inflation seemed to take Japan a step closer to the end of negative interest rates. Crypto mania is still running wild, with bitcoin trading near $66,000, having surged to...
BRIEF-Saudi's Seera Group Sells Its 1.25 Mln Shares In Uber For SAR 380 Mln
BRIEF-Saudi's Seera Group Sells Its 1.25 Mln Shares In Uber For SAR 380 Mln
Mar 4, 2024
March 5 (Reuters) - SEERA HOLDING GROUP SJSC: * UPDATES ON CAREEM INCS AGREEMENT WITH UBER TECHNOLOGIES INC TO ACQUIRE CAREEMS ASSETS FOR $3.1 BILLION * GROUP ANNOUNCES COMPLETION OF THE SALE OF ITS SHARES, AMOUNTING 1,249,264 SHARES, IN UBER FOR A TOTAL VALUE OF SAR 380.0 MILLION * DEAL YIELDED A TOTAL ADDITIONAL GAIN FOR GROUP OF SAR 164.6...
Bayer CEO says he will not break up the company for now
Bayer CEO says he will not break up the company for now
Mar 4, 2024
FRANKFURT, March 5 (Reuters) - Bayer said on Tuesday that it does not plan to change the group's diversified structure in the near future and will instead focus on improving the operating performance of the maker of drugs and farming products. Our answer is 'not now' - and this shouldn't be misunderstood as 'never', CEO Bill Anderson said in a...
Mexico's Pemex reports 44% surge in debt since October
Mexico's Pemex reports 44% surge in debt since October
Mar 4, 2024
MEXICO CITY, March 4 (Reuters) - Mexican state oil company Pemex's debt with suppliers and contractors surged 44% between its October and February debt reports, reaching 139.12 billion pesos ($8.20 billion). According to the report, published on Monday, Pemex's invoiced obligations for 2023 and 2024 total 138.85 billion pesos, with projects and materials pending invoice at the end of February...
Copyright 2023-2026 - www.financetom.com All Rights Reserved