Drinik malware risking SBI and other bank customers’ data
By MYBRANDBOOK
An upgraded version of Drinik malware has been discovered that puts data of 18 bank customers at risk. According to analysts at Cyble, the malware has evolved into an Android trojan that can steal important personal details and banking credentials.
As per the report, the latest version of Drinik malware comes in the form of an APK named iAssist. The iAssist is the official tax management tool of the India Tax department. Once installed on a device, the APK file will ask for permission to read, receive and send SMS in addition to reading the user’s call log. It also requests permission to read and write to external storage.
After launching, the malware prompts the victim to grant permissions, followed by a request to enable Accessibility Service. It then disables Google Play Protect and starts executing auto-gestures and capturing key presses.
Then it loads the genuine Indian income tax site, instead of displaying fake phishing pages. Before showing the login page to the victim, the malware will display an authentication screen for biometric verification. When the victim enters a PIN, the malware steals the biometric PIN by recording the screen and also captures keystrokes.
The stolen details are then sent to the C&C server. Once the victim logs into the account successfully, it shows a fake dialogue box on the screen mentioning a message of an instant tax refund from the user’s previous tax miscalculations till date. The user is then redirected to a phishing website when he/she clicks on the Apply button, prompting the victim to submit full name, Aadhar number, PAN number, and other details along with Account number, Credit card number, CVV, and PIN. The stolen data is again sent to the C&C servers.
Legal Battle Over IT Act Intensifies Amid Musk’s India Plans
The outcome of the legal dispute between X Corp and the Indian government c...
Wipro inks 10-year deal with Phoenix Group's ReAssure UK worth
The agreement, executed through Wipro and its 100% subsidiary,...
Centre announces that DPDP Rules nearing Finalisation by April
The government seeks to refine the rules for robust data protection, ensuri...
Home Ministry cracks down on PoS agents in digital arrest scam
Digital arrest scams are a growing cybercrime where victims are coerced or ...
ICONS OF INDIA : RAJESH NAMBIAR
Rajesh leads the company’s India associates and enhances relationshi...
Icons Of India : Debjani Ghosh
Debjani Ghosh is the President of the National Association of Software...
Icons Of India : ALOK OHRIE
Alok Ohrie leads Dell Technologies’ India business, overseeing Sales...
CSC - Common Service Centres
CSC initiative in India is a strategic cornerstone of the Digital Indi...
BSE - Bombay Stock Exchange
The Bombay Stock Exchange (BSE) is one of India’s largest and oldest...
IFFCO - Indian Farmers Fertiliser Cooperative
IFFCO operates as a cooperative society owned and controlled by its fa...
Indian Tech Talent Excelling The Tech World - REVATHI ADVAITHI, CEO- Flex
Revathi Advaithi, the CEO of Flex, is a dynamic leader driving growth ...
Indian Tech Talent Excelling The Tech World - AJAY BANGA, President - World Bank
Ajay Banga is an Indian-born American business executive who currently...
Indian Tech Talent Excelling The Tech World - Vinod Dham, Founder & Executive Managing Partner, IndoUS Venture Partners
Vinod Dham, known as the “Father of the Pentium Chip,” has left an...