Forum Index

It appears you have not yet registered with our community which limits what you can do & see. It's Free To register, please click here.





Security Alerts and vulnerabilities Lets keep abreast on the latest threats by posting those findings here..

Reply
 
Thread Tools Display Modes
  #1  
Old 11-13-2004, 09:50 AM
Mobo's Avatar
Mobo Mobo is offline
Thinking outside the box
 
Join Date: Sep 2004
Location: Cape Breton
Posts: 4,574
Send a message via ICQ to Mobo Send a message via AIM to Mobo Send a message via MSN to Mobo Send a message via Yahoo to Mobo Send a message via Skype™ to Mobo
Security experts say they've discovered a Trojan horse that records e-banking user details and Web surfing habits.

Antivirus company Sophos is warning that the Banker-AJ Trojan is targeting online customers of British banks such as Abbey, Barclays, Egg, HSBC, Lloyds TSB, Nationwide and NatWest. The Trojan affects computers running Microsoft Windows.

The company said that once installed, the Trojan waits for users to visit their online banking Web sites, then captures passwords and takes screenshots of the session. The information is relayed to the hackers behind the ploy, who use the data to steal money.

"It's the next generation of phishing attacks," said Graham Cluley, senior technology consultant for Sophos. "These rely on people going to real, legitimate sites. Once the Trojan determines that you've gone there, it starts taking keystroke logs and snaps shots of machines and sends it back to hackers."

Phishing scammers typically set up bogus Web sites to capture victims' personal information. They send e-mails that appear to come from trusted companies to lure people to the fake sites, where victims are asked to enter information such as credit card data. Attacks frequently target bank customers, but eBay and Amazon.com have also been recent targets.
Digital agenda

Barclays Bank said it had seen the technique of using legitimate sites before. A representative for the company said, "This type of Trojan is something (we) have been aware of for some time. We are working with (the) industry to identify the next steps to help combat fraud and are interested in educating customers."

Sophos also said it had seen a similar Trojan, Tofger, a few months ago, but the technique had mainly been used in Brazil.

"We did see another one a few months ago," Cluley added. "Some of the Brazilian ones just wait for the user to look at a Web site with the word 'bank' in (it), but this one specifically targets many well-known U.K. banks, and that makes it notable."
Reply With Quote
Posted


Reply

Currently Active Users Viewing This Thread: 1 (0 members and 1 guests)
 
Thread Tools
Display Modes

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is On
HTML code is Off
Forum Jump

Similar Threads
Thread Thread Starter Forum Replies Last Post
Web Postcards Hide Trojan Horse Programs LJM Master Security Alerts and vulnerabilities 0 04-06-2005 01:35 PM
"Phel" Trojan Alert Mobo Security Alerts and vulnerabilities 0 12-29-2004 07:09 PM



All times are GMT -5. The time now is 07:51 AM.


Firefox 2