Accessibility links
  • Skip to main content
News Icon NEWS FILTER
All News Scams & Phishing Security Education Videos Mobile Security Your Security Education Identity Theft Corporate Security
Search Icon SEARCH
 

Email Icon SUBSCRIBE TO WEEKLY NEWSLETTER
Drinik Android Banking Trojan May Empty Your Accounts
Facebook   X   LinkedIn   Email

Drinik Android Banking Trojan May Empty Your Accounts

February 7, 2023

Android users should be aware that a new version of the Drinik Android Trojan is now making its rounds. According to various reports, this malicious Trojan version is targeting users of financial institution applications and websites and aims to access sensitive login credentials. If successful, it can give cybercriminals full access to a user's financial accounts and of course, confidential financial details.

Previously, scammers used Drinik to steal your text/SMS messages, which meant they could get your multifactor authentication codes to use to get your online banking accounts. The updated version just tricks users into downloading a “helpful tax tool.” It uses text messaging (phishing using text/SMS messaging) or email to get users to click a link to download this “helpful” tool.

How it works

You may receive email or text messages that claim to be from the IRS or other Income Tax Department in the form of a tax management tool. If you install this tool, the virus asks for permission to access to your call logs, external storage, and text messages. Once you give that permission, Google will immediately disable Play Protect. What’s the harm in that, you ask? Well, Play Protect makes it easier for scammers to get your details.

Instead of taking the user to phishing pages, which was the previous tactic, Drinik opens what looks like the official website of the IRS. While using the form, the scammers make off with your account-related information through screen recording. There may also be a popup message that claims to provide some amount of money back to the user. That’s the hook. But once you hit the refund button supposedly to transfer the amount to your bank account, the scammers will instead empty your account of funds. 

What to do or not to do

With hackers becoming increasingly sophisticated, it’s vital now more than ever that users exercise caution when whatever you’re doing involves financial information or personally identifying information (PII). Be sure to triple check the link to your financial institutions to make sure they are the correct ones and if your browser pops up any type of security error, pay attention to it and go no further. Contact the organization and find out what is going on.

As for smishing, it’s being used more and more these days and sadly, it’s a rather successful tool for cybercriminals. If you get unsolicited text messages, be very careful about clicking on links that come in them. Financial institutions don’t generally send unsolicited links that way, and neither with the IRS. If you suspect a problem with your accounts, go directly to their apps or websites to take a look. Remember that government agencies do not make initial contact with you via email or text message. They will send a letter through the postal service.

Taking security precautions might seem mundane and sometimes they can seem bothersome when you have to change your passwords often, use multifactor authentication or other extra measures. But they do go a long way in fending off cyber threats like Drinik.


Mobile Banking Apps Continue To Be A Hi Value Target For Cybercriminals

Mobile Security

Mobile Banking Apps Continue To Be A Hi Value Target For Cybercriminals

It’s that time of year when organizations that track cybersecurity stats and other information start to release their results. And to no one’s surprise, mobile banking has been under attack in 2021. The Nokia 2021 Threat Intelligence Report found the cybercriminals’ desire to steal your banking credentials has ramped up throughout the year by logging your keystrokes, taking screenshots, trying to snag those two-factor authentication (2FA) codes, and using overlays. There’s no lack of trying to get your confidential information…and your money. READ FULL STORY

One Billion+ Android App Downloads Are Hiding Banking Trojans. Is One Yours?

Mobile Security

One Billion+ Android App Downloads Are Hiding Banking Trojans. Is One Yours?

With over one billion trojan banking malware downloads from 639 apps on Google Play Store, it’s time for mobile Android users to pay attention. After all, it’s ultimately the victims who end up paying the price for Google not finding the malware before making it available on their Play Store. Despite Google’s recently improved efforts to keep malware out of their App Store, like introducing Play Protect, it appears there’s a lot more work to be done. READ FULL STORY








Close
Fraud News & Alerts!

Keep up with the latest cyber security news through our weekly Fraud News & Alerts updates. Each week you will receive an email containing the latest cyber security news, tips and breach notifications.



You're all set!

You will receive your first official security update email within the next week.

A welcome email has also just been sent to you. If you do not receive this email within the next few minutes, please check your Junk box or spam filter to confirm our emails are not being blocked.


 
Help  
Enter any word or words you like.        

The email newsletter will arrive from news@stickleyonsecurity.com


Loading
Please wait...