• About Us
  • Privacy & Policy
  • Terms Conditions
  • Contact Us
biztoplocation.space
  • Home
  • Tech Trends

    The best deals ahead of the October Big Deal Days sale and everything we know so far

    Google Maps will flag businesses with potentially fake reviews

    DoNotPay ‘robot lawyer’ fined $193K by the FTC for not being a lawyer

    Meta’s Orion holographic avatars will (eventually) be in VR too

    Google files EU antitrust complaint against Microsoft

    California’s ‘click to cancel’ subscription bill is signed into law

    Horizon Zero Dawn Remastered arrives October 31 on PS5 and PC

    Ghost of Yōtei is a Tsushima sequel coming to PS5 in 2025

    The Google Photos video editor is getting AI, because of course it is

  • AI News
    The Quantum Arms Race Isn’t Just About Tech, It’s About Who Controls the Narrative

    “🌀 The Quantum Arms Race: Who Holds the Key to Our Tech Future? 🌍🔑”

    New Survey Finds Balancing AI’s Ease of Use with Trust is Top of Business Leaders Minds

    Navigating the AI Frontier: Balancing Trust and Usability for Business Success 🤝✨

    Benjamin Harvey, Ph.D., Founder & CEO of AI Squared – Interview Series

    Unlocking the Future of AI: Dr. Benjamin Harvey’s Vision with AI Squared 🚀✨

    How to Realize Value from a GenAI-Enabled Workforce

    Maximize Your Business Potential: The Game-Changing Power of GenAI 🚀✨

    How Does AI Use Impact Critical Thinking?

    Navigating the AI Revolution: Boosting Critical Thinking in a Tech-Driven World 🤖✨

    From Evo 1 to Evo 2: How NVIDIA is Redefining Genomic Research and AI-Driven Biological Innovations

    Unlocking the Secrets of Life: How NVIDIA is Revolutionizing Genomic Research with AI 🚀🌟

    Jotform Review: The Best Form Builder or Just Overhyped?

    Unlocking the Truth: Is Jotform the Next Best Thing in Form Building? 🤔🚀✨

    The Road to Better AI-Based Video Editing

    Unlock Your Creative Potential: Explore the Future of AI in Video Editing! 🎥✨🚀

    Post-RAG Evolution: AI’s Journey from Information Retrieval to Real-Time Reasoning

    Unlocking AI’s Future: From Data Fetching to Real-Time Thinking 🤖✨

  • Cyber Security
    Fake Kling AI Facebook Ads Deliver RAT Malware to Over 22 Million Potential Victims

    🚨 Beware of Kling AI! The Social Media Scam You Can’t Afford to Ignore 🚨

    How to Detect Phishing Attacks Faster: Tycoon2FA Example

    “🚨 Mastering the Art of Phishing Detection: Stay One Step Ahead in 2023! 🔍✨”

    The Crowded Battle: Key Insights from the 2025 State of Pentesting Report

    🛡️ Unleashing Cyber Resilience: Mastering Pentesting Strategies for 2025 🚀

    Fileless Remcos RAT Delivered via LNK Files and MSHTA in PowerShell-Based Attacks

    🚨 Unmasking the Threat: How Fileless Remcos RAT Uses LNK Files to Outwit Your Security! 🖥️💻

    Malicious npm Package Leverages Unicode Steganography, Google Calendar as C2 Dropper

    Unmasking Cyber Deception: How an npm Package Uses Unicode and Google Calendar for Sneaky Attacks! 🕵️‍♂️📅

    BianLian and RansomExx Exploit SAP NetWeaver Flaw to Deploy PipeMagic Trojan

    Stay Safe from Cyber Shadows: How BianLian & RansomExx Target SAP NetWeaver 🛡️🚨

    Xinbi Telegram Market Tied to $8.4B in Crypto Crime, Romance Scams, North Korea Laundering

    Unveiling the Dark Secrets of Xinbi: How a Telegram Marketplace is Fuelling $8.4 Billion in Crypto Crimes 🔍💰

    CTM360 Identifies Surge in Phishing Attacks Targeting Meta Business Users

    🚨 Stop the Phish: Essential Tips to Protect Your Meta Business Account! 🛡️💼

    China-Linked APTs Exploit SAP CVE-2025-31324 to Breach 581 Critical Systems Worldwide

    🚨 Unmasking the Danger: How China-Linked Cyber Groups are Targeting SAP Vulnerabilities! 🛡️🌐

  • Apps News
    The Quantum Arms Race Isn’t Just About Tech, It’s About Who Controls the Narrative

    “🌀 The Quantum Arms Race: Who Holds the Key to Our Tech Future? 🌍🔑”

    New Survey Finds Balancing AI’s Ease of Use with Trust is Top of Business Leaders Minds

    Navigating the AI Frontier: Balancing Trust and Usability for Business Success 🤝✨

    Benjamin Harvey, Ph.D., Founder & CEO of AI Squared – Interview Series

    Unlocking the Future of AI: Dr. Benjamin Harvey’s Vision with AI Squared 🚀✨

    How to Realize Value from a GenAI-Enabled Workforce

    Maximize Your Business Potential: The Game-Changing Power of GenAI 🚀✨

    How Does AI Use Impact Critical Thinking?

    Navigating the AI Revolution: Boosting Critical Thinking in a Tech-Driven World 🤖✨

    From Evo 1 to Evo 2: How NVIDIA is Redefining Genomic Research and AI-Driven Biological Innovations

    Unlocking the Secrets of Life: How NVIDIA is Revolutionizing Genomic Research with AI 🚀🌟

    Jotform Review: The Best Form Builder or Just Overhyped?

    Unlocking the Truth: Is Jotform the Next Best Thing in Form Building? 🤔🚀✨

    The Road to Better AI-Based Video Editing

    Unlock Your Creative Potential: Explore the Future of AI in Video Editing! 🎥✨🚀

    Post-RAG Evolution: AI’s Journey from Information Retrieval to Real-Time Reasoning

    Unlocking AI’s Future: From Data Fetching to Real-Time Thinking 🤖✨

  • Events

    Does Cannabis Belong at Business Events?

    Rising Event Costs to Challenge 2025 Budgets

    Event Tech and the Future of In-Person Networking

    Dubai To Invest $2.7 Billion in What Will Become the Largest Exhibition Venue in the Middle East

    The Old Playbook Will Not Work for Today’s Corporate Events

    Why Actual Face Time Beats Screen Time for Gen Z

    Breathe New Life Into Meetings in Whistler

    Oak View Group and OCESA Team Up to Offer Hospitality at Four Mexico City Venues

    Time to Chill: Planners’ Post-Meeting Rituals

No Result
View All Result
  • Home
  • Tech Trends

    The best deals ahead of the October Big Deal Days sale and everything we know so far

    Google Maps will flag businesses with potentially fake reviews

    DoNotPay ‘robot lawyer’ fined $193K by the FTC for not being a lawyer

    Meta’s Orion holographic avatars will (eventually) be in VR too

    Google files EU antitrust complaint against Microsoft

    California’s ‘click to cancel’ subscription bill is signed into law

    Horizon Zero Dawn Remastered arrives October 31 on PS5 and PC

    Ghost of Yōtei is a Tsushima sequel coming to PS5 in 2025

    The Google Photos video editor is getting AI, because of course it is

  • AI News
    The Quantum Arms Race Isn’t Just About Tech, It’s About Who Controls the Narrative

    “🌀 The Quantum Arms Race: Who Holds the Key to Our Tech Future? 🌍🔑”

    New Survey Finds Balancing AI’s Ease of Use with Trust is Top of Business Leaders Minds

    Navigating the AI Frontier: Balancing Trust and Usability for Business Success 🤝✨

    Benjamin Harvey, Ph.D., Founder & CEO of AI Squared – Interview Series

    Unlocking the Future of AI: Dr. Benjamin Harvey’s Vision with AI Squared 🚀✨

    How to Realize Value from a GenAI-Enabled Workforce

    Maximize Your Business Potential: The Game-Changing Power of GenAI 🚀✨

    How Does AI Use Impact Critical Thinking?

    Navigating the AI Revolution: Boosting Critical Thinking in a Tech-Driven World 🤖✨

    From Evo 1 to Evo 2: How NVIDIA is Redefining Genomic Research and AI-Driven Biological Innovations

    Unlocking the Secrets of Life: How NVIDIA is Revolutionizing Genomic Research with AI 🚀🌟

    Jotform Review: The Best Form Builder or Just Overhyped?

    Unlocking the Truth: Is Jotform the Next Best Thing in Form Building? 🤔🚀✨

    The Road to Better AI-Based Video Editing

    Unlock Your Creative Potential: Explore the Future of AI in Video Editing! 🎥✨🚀

    Post-RAG Evolution: AI’s Journey from Information Retrieval to Real-Time Reasoning

    Unlocking AI’s Future: From Data Fetching to Real-Time Thinking 🤖✨

  • Cyber Security
    Fake Kling AI Facebook Ads Deliver RAT Malware to Over 22 Million Potential Victims

    🚨 Beware of Kling AI! The Social Media Scam You Can’t Afford to Ignore 🚨

    How to Detect Phishing Attacks Faster: Tycoon2FA Example

    “🚨 Mastering the Art of Phishing Detection: Stay One Step Ahead in 2023! 🔍✨”

    The Crowded Battle: Key Insights from the 2025 State of Pentesting Report

    🛡️ Unleashing Cyber Resilience: Mastering Pentesting Strategies for 2025 🚀

    Fileless Remcos RAT Delivered via LNK Files and MSHTA in PowerShell-Based Attacks

    🚨 Unmasking the Threat: How Fileless Remcos RAT Uses LNK Files to Outwit Your Security! 🖥️💻

    Malicious npm Package Leverages Unicode Steganography, Google Calendar as C2 Dropper

    Unmasking Cyber Deception: How an npm Package Uses Unicode and Google Calendar for Sneaky Attacks! 🕵️‍♂️📅

    BianLian and RansomExx Exploit SAP NetWeaver Flaw to Deploy PipeMagic Trojan

    Stay Safe from Cyber Shadows: How BianLian & RansomExx Target SAP NetWeaver 🛡️🚨

    Xinbi Telegram Market Tied to $8.4B in Crypto Crime, Romance Scams, North Korea Laundering

    Unveiling the Dark Secrets of Xinbi: How a Telegram Marketplace is Fuelling $8.4 Billion in Crypto Crimes 🔍💰

    CTM360 Identifies Surge in Phishing Attacks Targeting Meta Business Users

    🚨 Stop the Phish: Essential Tips to Protect Your Meta Business Account! 🛡️💼

    China-Linked APTs Exploit SAP CVE-2025-31324 to Breach 581 Critical Systems Worldwide

    🚨 Unmasking the Danger: How China-Linked Cyber Groups are Targeting SAP Vulnerabilities! 🛡️🌐

  • Apps News
    The Quantum Arms Race Isn’t Just About Tech, It’s About Who Controls the Narrative

    “🌀 The Quantum Arms Race: Who Holds the Key to Our Tech Future? 🌍🔑”

    New Survey Finds Balancing AI’s Ease of Use with Trust is Top of Business Leaders Minds

    Navigating the AI Frontier: Balancing Trust and Usability for Business Success 🤝✨

    Benjamin Harvey, Ph.D., Founder & CEO of AI Squared – Interview Series

    Unlocking the Future of AI: Dr. Benjamin Harvey’s Vision with AI Squared 🚀✨

    How to Realize Value from a GenAI-Enabled Workforce

    Maximize Your Business Potential: The Game-Changing Power of GenAI 🚀✨

    How Does AI Use Impact Critical Thinking?

    Navigating the AI Revolution: Boosting Critical Thinking in a Tech-Driven World 🤖✨

    From Evo 1 to Evo 2: How NVIDIA is Redefining Genomic Research and AI-Driven Biological Innovations

    Unlocking the Secrets of Life: How NVIDIA is Revolutionizing Genomic Research with AI 🚀🌟

    Jotform Review: The Best Form Builder or Just Overhyped?

    Unlocking the Truth: Is Jotform the Next Best Thing in Form Building? 🤔🚀✨

    The Road to Better AI-Based Video Editing

    Unlock Your Creative Potential: Explore the Future of AI in Video Editing! 🎥✨🚀

    Post-RAG Evolution: AI’s Journey from Information Retrieval to Real-Time Reasoning

    Unlocking AI’s Future: From Data Fetching to Real-Time Thinking 🤖✨

  • Events

    Does Cannabis Belong at Business Events?

    Rising Event Costs to Challenge 2025 Budgets

    Event Tech and the Future of In-Person Networking

    Dubai To Invest $2.7 Billion in What Will Become the Largest Exhibition Venue in the Middle East

    The Old Playbook Will Not Work for Today’s Corporate Events

    Why Actual Face Time Beats Screen Time for Gen Z

    Breathe New Life Into Meetings in Whistler

    Oak View Group and OCESA Team Up to Offer Hospitality at Four Mexico City Venues

    Time to Chill: Planners’ Post-Meeting Rituals

No Result
View All Result
biztoplocation.space
No Result
View All Result
Home Security

TrickMo Android Trojan Exploits Accessibility Services for On-Device Banking Fraud

admin by admin
September 14, 2024
in Security
0
0
SHARES
0
VIEWS
Share on FacebookShare on Twitter

[ad_1]

Sep 13, 2024Ravie LakshmananFinancial Fraud / Mobile Security

TrickMo Android Trojan

Cybersecurity researchers have uncovered a new variant of an Android banking trojan called TrickMo that comes packed with new capabilities to evade analysis and display fake login screens to capture victims’ banking credentials.

“The mechanisms include using malformed ZIP files in combination with JSONPacker,” Cleafy security researchers Michele Roviello and Alessandro Strino said. “In addition, the application is installed through a dropper app that shares the same anti-analysis mechanisms.”

“These features are designed to evade detection and hinder cybersecurity professionals’ efforts to analyze and mitigate the malware.”

TrickMo, first caught in the wild by CERT-Bund in September 2019, has a history of targeting Android devices, particularly targeting users in Germany to siphon one-time passwords (OTPs) and other two-factor authentication (2FA) codes to facilitate financial fraud.

Cybersecurity

The mobile-focused malware is assessed to be the work of the now-defunct TrickBot e-crime gang, over time continually improving its obfuscation and anti-analysis features to fly under the radar.

Notable among the features are its ability to record screen activity, log keystrokes, harvest photos and SMS messages, remotely control the infected device to conduct on-device fraud (ODF), and abuse Android’s accessibility services API to carry out HTML overlay attacks as well as perform clicks and gestures on the device.

The malicious dropper app discovered by the Italian cybersecurity company masquerades as the Google Chrome web browser that, when launched after installation, urges the victim to update Google Play Services by clicking the Confirm button.

TrickMo Android Trojan

Should the user proceed with the update, an APK file containing the TrickMo payload is downloaded to the device under the guise of “Google Services,” following which the user is asked to enable accessibility services for the new app.

“Accessibility services are designed to assist users with disabilities by providing alternative ways to interact with their devices,” the researchers said. “However, when exploited by malicious apps like TrickMo, these services can grant extensive control over the device.”

“This elevated permission allows TrickMo to perform various malicious actions, such as intercepting SMS messages, handling notifications to intercept or hide authentication codes, and executing HTML overlay attacks to steal user credentials. Additionally, the malware can dismiss keyguards and auto-accept permissions, enabling it to integrate seamlessly into the device’s operations.”

Furthermore, the abuse of the accessibility services allows the malware to disable crucial security features and system updates, auto-grant permissions at will, and prevent the uninstallation of certain apps.

TrickMo Android Trojan

Cleafy’s analysis also uncovered misconfigurations in the command-and-control (C2) server that made it possible to access 12 GB worth of sensitive data exfiltrated from the devices, including credentials and pictures, without requiring any authentication.

The C2 server also hosts the HTML files used in the overlay attacks. These files encompass fake login pages for various services, counting banks such as ATB Mobile and Alpha Bank and cryptocurrency platforms like Binance.

The security lapse not only highlights the operational security (OPSEC) blunder on the part of the threat actors, but also puts the victims’ data at risk of exploitation by other threat actors.

Cybersecurity

The wealth of information exposed from TrickMo’s C2 infrastructure could be leveraged to commit identity theft, infiltrate various online accounts, conduct unauthorized fund transfers, and even make fraudulent purchases. Even worse, attackers could hijack the accounts and lock the victims out by resetting their passwords.

“Using personal information and images, the attacker can craft convincing messages that trick victims into divulging even more information or executing malicious actions,” the researchers noted.

“Exploiting such comprehensive personal data results in immediate financial and reputational damage and long-term consequences for the victims, making recovery a complex and prolonged process.”

The disclosure comes as Google has been plugging the security holes around sideloading to let third-party developers determine if their apps are sideloaded using the Play Integrity API and, if so, require users to download the apps from Google Play in order to continue using them.

Found this article interesting? Follow us on Twitter  and LinkedIn to read more exclusive content we post.



[ad_2]

Source link

Previous Post

Revive Your Gaming Memories: Top 5 Timeless Classics on the App Store 🎮✨

Next Post

Apple’s iOS 18 release date is September 16 but is your iPhone compatible? Here are the eligible devices and new features to expect

admin

admin

Next Post

Apple's iOS 18 release date is September 16 but is your iPhone compatible? Here are the eligible devices and new features to expect

Leave a Reply Cancel reply

Your email address will not be published. Required fields are marked *

Stay Connected test

  • 23.9k Followers
  • 99 Subscribers
  • Trending
  • Comments
  • Latest
CERT-UA Warns: Dark Crystal RAT Targets Ukrainian Defense via Malicious Signal Messages

Cybersecurity Under Siege: The Dark Crystal RAT Targets Ukraine’s Defense! 🚨🔒

March 20, 2025
Voyantis Secures $41M to Revolutionize AI-Driven Growth Strategies

Unlocking Growth: How Voyantis’ $41M AI Revolution is Changing the Game for Businesses 🌟💼

February 14, 2025

Oak View Group and OCESA Team Up to Offer Hospitality at Four Mexico City Venues

September 24, 2024

NYT mini crossword answers for September 22

September 22, 2024

Nth Degree Targets Strategic Acquisitions with New Backing from Shamrock Capital

0

5 Best Classic App Store Games

0

Apple Vision Pro Vulnerability Exposed Virtual Keyboard Inputs to Attackers

0

The best iPad accessories for 2024

0
Best New Games of May 2025

Top 5 Must-Play New Games of May 2025 🚀🎮 Unleash Your Gaming Adventure! 🌟

May 30, 2025
See Westeros in a New Light With Game of Thrones: Kingsroad

Discover Westeros Like Never Before: Your Epic Adventure Awaits with Game of Thrones: Kingsroad! 🏰✨🌍

May 28, 2025
Prostir Is a To-Do App for Stress-Free Planning

Unlock Your Zen: Transform Your To-Do List with Prostir! 📝✨

May 27, 2025
5 Best Games to Play Over the Long Weekend

Level Up Your Long Weekend: 5 Must-Play Games That Will Transform Your Gaming Experience! 🎮✨

May 23, 2025

Recent News

Best New Games of May 2025

Top 5 Must-Play New Games of May 2025 🚀🎮 Unleash Your Gaming Adventure! 🌟

May 30, 2025
See Westeros in a New Light With Game of Thrones: Kingsroad

Discover Westeros Like Never Before: Your Epic Adventure Awaits with Game of Thrones: Kingsroad! 🏰✨🌍

May 28, 2025
Prostir Is a To-Do App for Stress-Free Planning

Unlock Your Zen: Transform Your To-Do List with Prostir! 📝✨

May 27, 2025
5 Best Games to Play Over the Long Weekend

Level Up Your Long Weekend: 5 Must-Play Games That Will Transform Your Gaming Experience! 🎮✨

May 23, 2025

Biz Top News

At Biz Top News, we provide the latest updates and insights on technology, from AI and cybersecurity to apps and cryptocurrency. Stay informed with our expert analysis and breaking news.

Browse by Category

  • AI News
  • Apps
  • Crypto
  • Events
  • Security
  • Tech Trends
  • Uncategorized

About

  • About Us
  • Privacy & Policy
  • Terms Conditions
  • Contact Us

    © 2025 Biztoplocation - All rights reserved.

    No Result
    View All Result

    © 2025 Biztoplocation - All rights reserved.