Skip to main content

Zitmo trojan attacking Android bank transactions

Image used with permission by copyright holder

Zitmo, a Trojan spyware app that poses as banking activation software, has now been modified to attack Android-based devices. The virus, which steals financial transaction information, has previously been successfully used on Symbian, BlackBerry and Windows Mobile devices.

Axelle Apvrille, an author at the security blog Fortinet, said Zitmo is being put to use by the ZeuS botnet gang.

“The malware poses as a banking activation application,” she said. “In the background, it listens to all incoming SMS messages and forwards them to a remote Web server. It’s simple, but just enough for the ZeuS gang to grab your banking mTANs.”

MTAN stands for “mobile transaction authentication number” or, if you’re not a banker, a single-use password for approving bank transactions while you’re on the go. MTANs are sent by text message between the bank and customer, and are recommended for use by the Federal Financial Institutions Examinations Council because they offer a type of authentication that doesn’t go through regular channels. In other words, they are supposed to be harder to crack.

The Zitmo attack works because ZeuS figured out how to get in early. The malware first infects a user’s PC and waits for the user to visit their bank site on their phone. Posing as a new layer of security software, Zitmo prompts users to download itself. When that happens, it controls the user’s PC and phone, and will continue sending crucial information to outside parties.

Editors' Recommendations

Derek Mead
Former Digital Trends Contributor
I can’t wait for Nothing to launch this stunning phone
Nothing Community Edition Project winner.

Say what you will about Nothing, but this brand certainly has a taste for flashy design. After all, how many phones out there light up and sync to the beat of music? But the company's latest smartphone endeavor could just be its best yet.

In March, Nothing introduced its Community Edition Project. The goal was to take ideas from its fans for hardware design, with the Nothing Phone 2a serving as the foundation. The company also has similar plans for wallpaper, packaging, and marketing shenanigans. Today, Nothing announced its winning entry for the phone design, and it’s a stunner.

Read more
The best tablets in 2024: top 11 tablets you can buy now
Disney+ app on the iPad Air 5.

As much as we love having the best smartphones in our pockets, there are times when those small screens don't cut it and we just need a larger display. That's when you turn to a tablet, which is great for being productive on the go and can be a awesome way to unwind and relax too. While the tablet market really took off after the iPad, it has grown to be quite diverse with a huge variety of products — from great budget options to powerhouses for professionals.

We've tried out a lot of tablets here at Digital Trends, from the workhorses for pros to tablets that are made for kids and even seniors -- there's a tablet for every person and every budget. For most people, though, we think Apple's iPad Air is the best overall tablet — especially if you're already invested in the Apple ecosystem. But if you're not an Apple user, that's fine too; there are plenty of other great options that you'll find in this roundup.

Read more
How to tell if someone has blocked you on Snapchat
Snapchat on iPhone.

Not everyone will like the content you post on Snapchat. In some cases, some users may even choose to block you, for whatever reason. Although Snapchat doesn’t offer an “official” way to determine whether someone has blocked you on the social network, it is possible.

Read more