financetom
Business
financetom
/
Business
/
Beware of trojan malware attack, MeitY warns customers of major banks
News World Market Environment Technology Personal Finance Politics Retail Business Economy Cryptocurrency Forex Stocks Market Commodities
Beware of trojan malware attack, MeitY warns customers of major banks
Sep 23, 2021 6:41 AM

The Ministry of Electronics and Information Technology’s Computer Emergency Response Team (CERT-In) has alerted customers about a new banking trojan malware that is targeting customers by sending them a fake income-tax refund-related link.

Share Market Live

NSE

“It has been observed that Indian banking customers are being targeted by a new type of mobile banking campaign using Drink android malware,” said CERT-In.

Drinik initially started as a primitive SMS stealer in 2016 and now it has evolved to a banking trojan that displays a fake screen as a real one in order to persuade users to enter their bank details. Customers of more than 27 public and private sector banks have already been victims of such attacks.

CERT-In says that if any such suspicious activity is noticed by users they should immediately report with relevant details to [email protected].

How does it work?

CERT-In explained about the malware attack on its website. The post said that the victim first receives an SMS having a link to some phishing website (the link is similar to that of the Income Tax department’s website). After the customer clicks on the link, he/she is asked to enter personal information and then download the malicious APK file in order to complete the verification.

After the installation is completed, the app asks the user to grant some permissions like SMS, call logs, contacts, etc. The users are then asked to enter data like personal information including the full name, PAN Card details, Aadhaar details, address, date of birth, mobile number, email address, and other bank details like CVV number, IFSC code, etc. If the user doesn’t enter any sort of information, the same screen with the form is displayed and he/she is asked to fill in to proceed further.

After the details are entered, the application says that there is a refund amount that could be transferred to their bank account. When the user enters the refund amount and clicks on the “Transfer” option, the app shows an error and displays a fake update screen.

While the screen for installing updates is shown to the user, Trojan malware at the backend transfers all the data including the user’s SMS and call log details to the attacker’s machine. All these details are then used by attackers to show relevant mobile banking screen on the user’s device. When the user enters the mobile banking details, they are captured by the attacker.

(Edited by : Anshul)

Comments
Welcome to financetom comments! Please keep conversations courteous and on-topic. To fosterproductive and respectful conversations, you may see comments from our Community Managers.
Sign up to post
Sort by
Show More Comments
Related Articles >
United Microelectronics Reports 7.9% Sales Decline in June
United Microelectronics Reports 7.9% Sales Decline in June
Jul 5, 2024
03:36 AM EDT, 07/05/2024 (MT Newswires) -- United Microelectronics ( UMC ) reported Thursday net sales of 17.55 billion New Taiwan dollars ($540.7 million) in June, down 7.9% from a year earlier. For the January to June period, sales were up 0.8% year over year to NT$111.43 billion, the company said. Price: 8.33, Change: -0.01, Percent Change: -0.12 ...
Foxconn Q2 revenue jumps 19% y/y, sees growth in Q3
Foxconn Q2 revenue jumps 19% y/y, sees growth in Q3
Jul 5, 2024
TAIPEI (Reuters) - Taiwan's Foxconn, the world's largest contract electronics maker and Apple's ( AAPL ) biggest iPhone assembler, reported on Friday its second-quarter revenue jumped 19% year-on-year, and predicted third-quarter revenue would rise year-on-year. (Reporting by Ben Blanchard; Editing by Muralikumar Anantharaman) ...
How Raiffeisen's bet on Russia took it to the brink
How Raiffeisen's bet on Russia took it to the brink
Jul 5, 2024
VIENNA (Reuters) -For more than four months, U.S. envoys delivered increasingly shrill warnings to Austria's Raiffeisen Bank International to scrap a deal they said had links to one of Russia's most powerful oligarchs. In May, Washington's patience snapped. In a written ultimatum that landed on May 8 at the bank, its supervisor the European Central Bank and Austria's government, Washington...
INSIGHT-How Raiffeisen's bet on Russia took it to the brink
INSIGHT-How Raiffeisen's bet on Russia took it to the brink
Jul 5, 2024
VIENNA, July 4 (Reuters) - For more than four months, U.S. envoys delivered increasingly shrill warnings to Austria's Raiffeisen Bank International to scrap a deal they said had links to one of Russia's most powerful oligarchs. In May, Washington's patience snapped. In a written ultimatum that landed on May 8 at the bank, its supervisor the European Central Bank and...
Copyright 2023-2026 - www.financetom.com All Rights Reserved