Skip to main content

Zitmo trojan attacking Android bank transactions

Image used with permission by copyright holder

Zitmo, a Trojan spyware app that poses as banking activation software, has now been modified to attack Android-based devices. The virus, which steals financial transaction information, has previously been successfully used on Symbian, BlackBerry and Windows Mobile devices.

Axelle Apvrille, an author at the security blog Fortinet, said Zitmo is being put to use by the ZeuS botnet gang.

“The malware poses as a banking activation application,” she said. “In the background, it listens to all incoming SMS messages and forwards them to a remote Web server. It’s simple, but just enough for the ZeuS gang to grab your banking mTANs.”

MTAN stands for “mobile transaction authentication number” or, if you’re not a banker, a single-use password for approving bank transactions while you’re on the go. MTANs are sent by text message between the bank and customer, and are recommended for use by the Federal Financial Institutions Examinations Council because they offer a type of authentication that doesn’t go through regular channels. In other words, they are supposed to be harder to crack.

The Zitmo attack works because ZeuS figured out how to get in early. The malware first infects a user’s PC and waits for the user to visit their bank site on their phone. Posing as a new layer of security software, Zitmo prompts users to download itself. When that happens, it controls the user’s PC and phone, and will continue sending crucial information to outside parties.

Editors' Recommendations

Derek Mead
Former Digital Trends Contributor
I keep forgetting about the Apple Watch Series 9’s coolest feature
Apps on the Apple Watch Series 9's screen.

I’m just going to come out and say it: I love the Apple Watch Series 9. A couple of weeks ago, I returned to wearing it every day after an extended period of not doing so. And you know what? I was surprised by how much I’d missed it.

But one thing has bothered me this time around: There's a feature I haven't been using. Not because it’s bad, but because I tend to forget it's there.
Effortless to own and wear

Read more
3 foldable phone deals you should seriously consider today
The Google Pixel Fold with the screen open.

For those who are thinking about getting a foldable phone, we've rounded up three foldable phone deals for you to consider as your next purchase. Motorola is currently selling the Motorola Razr at $200 off, which brings its price down to $500 from $700, and the Motorola Razr Plus at $300 off, which lowers its price to $700 from $1,000. Meanwhile, the Google Pixel Fold is available from Best Buy with a $500 discount that slashes its price to $1,299 from $1,799. You can be sure that you won't regret purchasing any of these devices because they're all included in our roundup of the best folding phones, but you need to hurry because the offers may expire at any moment.
Motorola Razr -- $500, was $700

The Motorola Razr features a 1.5-inch external OLED display and a 6.9-inch Full HD+ internal pOLED display, with decent performance provided by its Qualcomm Snapdragon 7 Gen 1 processor and 8GB of RAM. It's got a 64MP main camera and a 13MP wide-angle camera at the back, plus a 32MP selfie camera inside. The folding phone features a metal chassis that's surrounded by soft but durable leather, and it folds without a gap.

Read more
The OnePlus 12R is still one of 2024’s best smartphone deals
OnePlus 12R Genshin Impact Edition in hand.

OnePlus is still quite new to me, as I was a lifelong iPhone user until I joined Digital Trends. However, OnePlus has a pretty solid reputation in the mobile world, and now I can see why, as the OnePlus 12 is one of my favorite smartphones that I’ve used so far this year.

But the OnePlus 12 isn’t the only phone that OnePlus launched in 2024. There is also the more affordable value option, the OnePlus 12R, which even comes in a cool Genshin Impact Edition.

Read more