Bitcoin Forum
May 26, 2024, 07:10:09 PM *
News: Latest Bitcoin Core release: 27.0 [Torrent]
 
   Home   Help Search Login Register More  
Pages: [1]
  Print  
Author Topic: Android malware can steal Google Authenticator 2FA codes  (Read 29 times)
TrevorS (OP)
Sr. Member
****
Offline Offline

Activity: 1050
Merit: 377



View Profile
September 26, 2020, 08:26:05 PM
 #1

A new version of the "Cerberus" Android banking trojan will be able to steal one-time codes generated by the Google Authenticator app and bypass 2FA-protected accounts.

Security researchers say that an Android malware strain can now extract and steal one-time passcodes (OTP) generated through Google Authenticator, a mobile app that's used as a two-factor authentication (2FA) layer for many online accounts.

Google launched the Authenticator mobile app in 2010. The app works by generating six to eight-digits-long unique codes that users must enter in login forms while trying to access online accounts.

Google launched Authenticator as an alternative to SMS-based one-time passcodes. Because Google Authenticator codes are generated on a user's smartphone and never travel through insecure mobile networks, online accounts who use Authenticator codes as 2FA layers are considered more secure than those protected by SMS-based codes.

CERBERUS GETS AUTHENTICATOR OTP-STEALING CAPABILITIES

In a report published this week, security researchers from Dutch mobile security firm ThreatFabric say they've spotted an Authenticator OTP-stealing capability in recent samples of Cerberus, a relatively new Android banking trojan that launched in June 2019.

"Abusing the Accessibility privileges, the Trojan can now also steal 2FA codes from Google Authenticator application," the ThreatFabric team said.
"When the [Authenticator] app is running, the Trojan can get the content of the interface and can send it to the [command-and-control] server," they added.

ThreatFabric said this new feature is not yet live in the Cerberus version advertised and sold on hacking forums.
"We believe that this variant of Cerberus is still in the test phase but might be released soon," researchers said.

https://www.zdnet.com/article/android-malware-can-steal-google-authenticator-2fa-codes/?&web_view=true

                       ▄█████▄
                       ██   ██
  ▄▄▄                  ▀█▄▄▄█▀
▄█████▄                 ▀███▀
███████                   ▀
 ▀███▀
  ▀███                   ▄██
   ████                 ▄██▀
    ████              ▄███▀
     ████▄▄        ▄▄████
      ▀██████▄▄▄▄██████▀
        ▀▀██████████▀▀
            ▀▀▀▀▀▀
||..THE WORLDS FIRST...........
..SOCIAL UTILITY CRYPTO..
|████████████████████████████
████████████████████████████
████████████████████████████
█████████████████▀▀  ███████
█████████████▀▀      ███████
█████████▀▀   ▄▄     ███████
█████▀▀    ▄█▀▀     ████████
█████████ █▀        ████████
█████████ █ ▄███▄   ████████
██████████████████▄▄████████
████████████████████████████
████████████████████████████
████████████████████████████
████████████████████████████
████████████████████████████
████████████████████████████
████████████████▀▀▀█████████
██████ ▀██████▀      ▄██████
██████▄   ▀▀▀        ███████
██████▄             ▄███████
███████▄           ▄████████
██████▀▀▀        ▄██████████
███████▄▄     ▄▄████████████
████████████████████████████
████████████████████████████
████████████████████████████
████████████████████████████
████████████████████████████
████████████████████████████
█████████████▀    ▐█████████
████████████    ▄▄██████████
███████████▀    ▀▀██████████
██████████▌       ██████████
████████████    ████████████
████████████    ████████████
████████████    ████████████
████████████▄  ▄████████████
████████████████████████████
████████████████████████████
|█▀▀











█▄▄
▀▀█











▄▄█
jossiel
Hero Member
*****
Offline Offline

Activity: 2996
Merit: 632


Seabet.io | Crypto-Casino


View Profile
September 26, 2020, 09:48:12 PM
 #2

The article describes that malware is advance.

But we're not going to get that malware installed in our Android Phones if we're not going to download anything suspicious in our smartphones, right?

"Prevention is better than cure".


████████▄▄█▀▀▀▀▀▀▀█▄▄
████████▄▄▄    ▄▄█▀▀▀██▄
   ▄██▀▀▀▀▀▀████▄▄███████▄
  █▀██████▄█▀ ▄█▀▀▀██▀▀▀███
  ██████▄██▀▀▀██████▀█▄ ███
  █▄ ▀▀ █████████████████
▄  ██   █▀████████████▄█ █
▀█  ▀█▄ ▄████████████▀▀▄██
 ▀█   ▀████████████████▄█▀
  ▀█▄    ████▄▄██████▄▄██▀
    ▀▀█▄▄ █▄▄  ▀▀▀▀███▀
████████▀▀▀██████▀▀▀
.
Seabet.io
█▀▀▀










█▄▄▄
▀▀▀█










▄▄▄█
.
SPORTS
▀▀▀█










▄▄▄█
🎰.
CASINO
▀▀▀█










▄▄▄█
██████
██
██
██
██
██
██
██
██
██
██
██████
████████████████████████████████   ████████████████   ██████
.
..PLAY NOW..
.
██████   ███████████████████   █████████████████████████████
██████
██
██
██
██
██
██
██
██
██
██
██████
pallang
Full Member
***
Offline Offline

Activity: 518
Merit: 100



View Profile
September 26, 2020, 10:46:28 PM
 #3

The article describes that malware is advance.

But we're not going to get that malware installed in our Android Phones if we're not going to download anything suspicious in our smartphones, right?

"Prevention is better than cure".


Right, and i wanna add that if ever you want to download an app always take a look at reviews and comments about that app it will help you decide if you want to download it or not.

Pages: [1]
  Print  
 
Jump to:  

Powered by MySQL Powered by PHP Powered by SMF 1.1.19 | SMF © 2006-2009, Simple Machines Valid XHTML 1.0! Valid CSS!