Providing Free and Editor Tested Software Downloads
< HOME | TUTORIALS | GEEK-CADE| WEB TOOLS | YOUTUBE | NEWSLETTER | DEALS! | FORUMS | >

MajorGeeks.com - Chicks just love a Geek in Uniform.

Software Categories

All In One Tweaks
Android
Antivirus & Malware
Appearance
Back Up
Browsers
CD\DVD\Blu-Ray
Covert Ops
Drivers
Drives (SSD, HDD, USB)
Games
Graphics & Photos
Internet Tools
Linux Distros
MajorGeeks Windows Tweaks
Multimedia
Networking
Office & Productivity
System Tools

Other news

· How To and Tutorials
· Life Hacks and Reviews
· Way Off Base
· MajorGeeks Deals
· News
· Off Base
· Reviews




spread the word

· YouTube
· Facebook
· Instagram
· Twitter
· Pintrest
· RSS/XML Feeds
· News Blur
· Yahoo
· Symbaloo

about

· Top Freeware Picks
· Malware Removal
· Geektionary
· Useful Links
· About Us
· Copyright
· Privacy
· Terms of Service
· How to Uninstall

top downloads

1. Smart Defrag
2. GS Auto Clicker
3. Macrium Reflect FREE Edition
4. Sergei Strelec's WinPE
5. MusicBee
6. Visual C++ Redistributable Runtimes AIO Repack
7. K-Lite Mega Codec Pack
8. ImgBurn
9. Unlocker
10. Format Factory
More >>

top reads

Star 8 Windows Shortcuts That’ll Make You More Productive and Save You Time

Star Windows 10 Not Dead Yet - You Can Still Get Updates For Free

Star What is a '400 Bad Request - Request Header or Cookie Too Large' Error and How to Fix It

Star How to Fix Windows Install Error 0xC1900101

Star How to Force Enable Windows 10 Extended Security Updates If The Option Is Not Showing

Star Windows 11 25H2 is Out: What’s New and How to Get It Now.

Star Star Trek Fleet Command Promo Codes: Redeem Codes for Free Shards, Blueprints And Resources

Star Boost Your PC Speed with ReadyBoost: How a Thumb Drive Can Enhance Your System's Performance

Star 5 Hidden Windows Tools You’ve Had All Along But Never Use

Star Use the Windows 10 Media Creation Tool Before Support Ends For Windows 10 in 2025


MajorGeeks.Com » News » December 2012 » Millions stolen with mTAN fraud

Millions stolen with mTAN fraud


Contributed by: Email on 12/06/2012 03:52 PM [ comments Comments ]


The Zeus-in-the-Mobile (ZitMO) Trojan has apparently been used to steal as much as 36 million euros, 13 million in Germany alone, from more than 30,000 bank customers. Kaspersky Lab reported on Zeus in the Mobile a few months ago; now, a new study⁠PDF from software and security firms Versafe and Check Point Software Technologies gives more details on ZitMO and its scope. They have dubbed the attack campaign "Eurograbber".

Although all Eurograbber victims seem to be in Europe, Versafe and Check Point aren't counting out the possibility that similar attacks are going on elsewhere. They say that the attack began in Italy before spreading out through Germany, Spain and the Netherlands. Trojans infected the victims' computers and then their mobile devices in order to get past the banks' two-factor authentication processes.


After the initial infection, clients are asked to install a security update.

A malicious program installed on an infected Windows computer began the process by monitoring and manipulating the victim's online banking sessions. In this seemingly trustworthy context, it would then ask for the user's mobile phone number and operating system in order to install an important security update. Users who installed the apparent update that was sent to their mobile phone were really installing a Trojan that then proceeded to steal mobile TANs (mTAN) and forward them to the crooks. The stolen data was stored on compromised servers; to keep them a secret, the attackers occasionally changed servers and domain names. The Trojan was written for Android and Blackberry; there doesn't seem to be an iOS version. Since the number of Android users is growing, ZitMO's potential coverage is quite large.

The mTAN system is used throughout continental Europe and provides online banking security by giving the customer a list of one-time passwords to add an additional factor to the authentication process.

Versafe and Check Point say that withdrawals were made from victims' accounts amounting to anything from 500 to 250,000 euros. In many cases, the attackers apparently continued to withdraw money to the full extent of authorized overdraft limits. The total of 36 million euros has not yet been confirmed by any other parties. In mid-November, Berlin police told The H's associates at heise Security that fewer than ten complaints had been received regarding possible ZitMO attacks. One possible explanation for the large monetary figure is that the researchers analyzed the servers' logs to estimate a total without taking into account that not all fraud attempts may have actually been successful.






« 1.1 million US consumers affected as insurance companies breached · Millions stolen with mTAN fraud · Florida Friday: Drunken man fell out of car with his pants down, then it gets weird »




Comments
comments powered by Disqus

MajorGeeks.Com » News » December 2012 » Millions stolen with mTAN fraud

© 2000-2025 MajorGeeks.com
Powered by Contentteller® Business Edition