Posts Tagged ‘Emmental’

Trend Micro exposes undetectable malware against bank session tokens

Wednesday, July 23rd, 2014

Are your devices infected? “Operation Emmental” is a new criminal operation which targets banks that use session tokens such as Short Message Service (“SMS”) for authentication purposes – to steal customers’ online banking credentials to gain full access and control of their bank accounts.

A comparison between the two-factor authentication process in uninfected and infected computers with Operation Emmental.

A comparison between the two-factor authentication process in uninfected and infected computers with Operation Emmental.

Like Swiss Emmental cheese, the ways in which your online banking accounts are protected might be full of holes, or rather loopholes.

Commenting on today’s rampant mobile cybercrimes, Paul Oliveria, Technical Communications Manager of Trend Labs, Trend Micro shared: “Monetary benefits remain the biggest motivation for cybercriminals. Based on Trend Micro TrendLabs 1Q 2014 Security Roundup report, the number of online banking malware detections in the first quarter reached roughly 116,000 showing a steady increase from the same quarter in 2013.”

Cloud security experts Trend Micro warns of “undetectable” malware infection that targets mobile banking users.

Currently prevalent in Austria, Sweden and Switzerland, this cybercrime has reached Japan, leaving the Asia Pacific region at greater risk of a similar attack.

Mobile devices are also increasingly being included in cross-platform threats.

With mobile devices no longer being just phones and serve as computer substitutes in their own right, users are often connecting their mobile devices to their home/work systems to sync their files and documents.

This link between the devices is what threats use to jump across.

(more…)