Skip to main content

Zitmo trojan attacking Android bank transactions

Image used with permission by copyright holder

Zitmo, a Trojan spyware app that poses as banking activation software, has now been modified to attack Android-based devices. The virus, which steals financial transaction information, has previously been successfully used on Symbian, BlackBerry and Windows Mobile devices.

Axelle Apvrille, an author at the security blog Fortinet, said Zitmo is being put to use by the ZeuS botnet gang.

“The malware poses as a banking activation application,” she said. “In the background, it listens to all incoming SMS messages and forwards them to a remote Web server. It’s simple, but just enough for the ZeuS gang to grab your banking mTANs.”

MTAN stands for “mobile transaction authentication number” or, if you’re not a banker, a single-use password for approving bank transactions while you’re on the go. MTANs are sent by text message between the bank and customer, and are recommended for use by the Federal Financial Institutions Examinations Council because they offer a type of authentication that doesn’t go through regular channels. In other words, they are supposed to be harder to crack.

The Zitmo attack works because ZeuS figured out how to get in early. The malware first infects a user’s PC and waits for the user to visit their bank site on their phone. Posing as a new layer of security software, Zitmo prompts users to download itself. When that happens, it controls the user’s PC and phone, and will continue sending crucial information to outside parties.

Editors' Recommendations

Derek Mead
Former Digital Trends Contributor
How to turn off Activity Status on Instagram
Instagram on an iPhone.

Instagram is a popular social networking site that allows users to communicate through text, photos, and videos. One of its features is the app's Activity Status, which lets users know when someone was last active on the app or if they are currently online.

Read more
Grab a 4-pack of Apple AirTags while they’re on sale
Person holding an Apple AirTag.

If you're one of those people who always keep misplacing their stuff, then you may want to take advantage of Walmart's offer for the Apple AirTag. Four of the Bluetooth trackers, which will make sure that you never lose anything again, are available for just $80, following a $19 discount on the bundle's original price of $99. There's no telling how long this lowered price will last, so if you think you'll find some use for these tracking devices, it's highly recommended that you proceed with the purchase as soon as possible.

Why you should buy the Apple AirTag
The Apple AirTag is highlighted in our roundup of the best Bluetooth trackers as the top choice if you're invested in the iOS ecosystem. In addition to a quick and easy one-tap setup to link the tracking device to your iPhone or iPad, the Apple AirTag uses Apple's Find My network to keep track of your things. Precision Finding with Ultra Wideband technology will lead you to your Apple AirTag, with the help of the millions of devices in the Find My network that will work together to locate your missing item when you activate Lost Mode.

Read more
Huawei’s gorgeous Pura 70 phones just got expanded availability
Huawei Pura 70 pink, green, white, and black colors.

Huawei Pura 70 Huawei

After being announced for China in mid-April, the Huawei Pura 70 series is now confirmed for the EU market. Those in the European market can expect to preorder the Pura 70, Pura 70 Pro, and the top-tier Pura 70 Ultra starting May 2 for 999 euros, 1,199 euros, and 1,499 euros, respectively. This pricing is in line with what we saw in China, with the Ultra coming in at 9,999 yuan ($1,400) and the base Pura 70 at 5,499 yuan ($760).

Read more