Researchers from Kaspersky Lab reported that they recently stumbled across a new piece of sophisticated Android malware designed to steal a user’s banking credentials. In a broad sense, the malware is similar to other schemes we’ve seen before insofar that it uses cleverly thought out phishing schemes designed to trick users into entering in their banking user ID and password.
All the more worrisome is that the malware is able to intercept, delete and even send text messages sent from banking institutions. The danger with this is two-fold. One, some banks will send users an alert or notification when suspicious banking activity is detected. If the malware can delete such messages, users remain oblivious to the fact that their account may have been compromised.
Two, some banks have security protocols that require users to authenticate certain transactions or otherwise unusual banking activity via SMS. What’s more, the report notes that “the malware can counteract mobile security solutions that are popular in Russia by completing their processes.”
Now if that weren’t bad enough, Kaspersky adds that the malware is being spread by Google’s own AdSense advertising network.
Submitted by: Arnfried Walbrecht