Updated News Around the World

Android: How hackers are ‘spreading Android apps’ that can steal passwords, 2FA codes – Times of India

Cyberattacks have been on a rise, and a new report has claimed that there is a fresh strain of malware that is aimed at stealing users’ sensitive information, such as credit card info and 2-factor authentication codes, by mimicking popular Android apps.
According to a report by Check Point Research (CPR), there is a highly sophisticated malware campaign that is directed at a variety of sectors in Eastern Asia. In this campaign, malware dubbed FluHorse disguises itself as legitimate apps. The list includes apps with over 1,00,000 downloads.

How hackers are spreading FluHorse
According to research, FluHorse targets multiple sectors in Eastern Asia and is typically distributed via email. It has also targeted high-profile entities such as governmental officials in the initial stages of the phishing email attack.
Cybercriminals reportedly chose an eclectic selection of targeted sectors for specific countries, using one mimicked app in each country.
These are mimicked apps from reputable companies because hackers are confident that such apps will attract financially stable customers due to the company’s reputation for trustworthiness.
FluHorse also has the ability to remain undetected for extended periods of time, making it a persistent threat that is difficult to identify.

FluHorse steals 2FA codes
The report said that the goal of this campaign is to steal sensitive information, including user credentials like 2-factor authentication (2FA) codes and credit card details.
The 2FA is a measure to improve security for online services that require a password. Users are required to provide an authentication code or other methods like permission from a primary device or key to prove they are the ones accessing the service.
This campaign is quite dangerous because it reportedly hits the codes that are used to authenticate users, essentially rendering 2FA ineffective in stopping unauthorised access to services.
Recently, a report said that global weekly cyberattacks rose by 7% year-over-year in the first quarter of 2023 (Q1 2023) and India recorded an increase of 18% in weekly cyberattacks in the first three months this year.

function loadGtagEvents(isGoogleCampaignActive) { if (!isGoogleCampaignActive) { return; } var id = document.getElementById('toi-plus-google-campaign'); if (id) { return; } (function(f, b, e, v, n, t, s) { t = b.createElement(e); t.async = !0; t.defer = !0; t.src = v; t.id = 'toi-plus-google-campaign'; s = b.getElementsByTagName(e)[0]; s.parentNode.insertBefore(t, s); })(f, b, e, 'https://www.googletagmanager.com/gtag/js?id=AW-877820074', n, t, s); };

window.TimesApps = window.TimesApps || {}; var TimesApps = window.TimesApps; TimesApps.toiPlusEvents = function(config) { var isConfigAvailable = "toiplus_site_settings" in f && "isFBCampaignActive" in f.toiplus_site_settings && "isGoogleCampaignActive" in f.toiplus_site_settings; var isPrimeUser = window.isPrime; if (isConfigAvailable && !isPrimeUser) { loadGtagEvents(f.toiplus_site_settings.isGoogleCampaignActive); loadFBEvents(f.toiplus_site_settings.isFBCampaignActive); } else { var JarvisUrl="https://jarvis.indiatimes.com/v1/feeds/toi_plus/site_settings/643526e21443833f0c454615?db_env=published"; window.getFromClient(JarvisUrl, function(config){ if (config) { loadGtagEvents(config?.isGoogleCampaignActive); loadFBEvents(config?.isFBCampaignActive); } }) } }; })( window, document, 'script', );

For all the latest Technology News Click Here 

 For the latest news and updates, follow us on Google News

Read original article here

Denial of responsibility! NewsUpdate is an automatic aggregator around the global media. All the content are available free on Internet. We have just arranged it in one platform for educational purpose only. In each content, the hyperlink to the primary source is specified. All trademarks belong to their rightful owners, all materials to their authors. If you are the owner of the content and do not want us to publish your materials on our website, please contact us by email – [email protected]. The content will be deleted within 24 hours.