< Back to 68k.news LB front page

Scam alert for Android users as 'Brokewell' malware threatens users' bank accounts

Original source (on modern site)

Android phone users who use Google Chrome as their main browser are being warned about a severe malware currently circulating that has the potential to empty bank accounts.

Analysts at ThreatFabric recently discovered a new virus called "Brokewell," which had extensive Device Takeover capabilities. The threat intelligence company discovered a fake browser update page designed to install an Android application. Screenshots of the two browsers showed how difficult it is to spot the fraud.

According to the security firm, it also poses a "significant threat to the banking industry," as it provides hackers with remote access to all assets available through mobile banking.

"The Trojan appears to be in active development, with new commands added almost daily," they stated.

Brokewell is reportedly a common modern banking virus equipped with both data-stealing and remote-control capabilities built into the malware. It uses overlay attacks, a common technique for Android banking malware, where it displays a bogus screen on a targeted application to capture user information.

Experts discovered that the malware, which copied a fake Google Chrome update, was also used alongside Klarna, a well-known "buy now, pay later" financial service, and a digital authentication application from Austria.

After stealing these details, the hackers then can initiate a Device Takeover attack using remote control capabilities. The malware performs screen streaming and provides the attacker with the ability to touch, swipe, and click on various elements.

ThreatFabric warns of the likely evolution and daily updates of the Brokewell malware, potentially offered as a rental service on underground channels. It stresses that only robust, multi-layered fraud detection systems can effectively counteract such malware, which poses significant risks to financial institution customers.

How do I know if an app has malware or is a fake app?

Cybersecurity company Kaspersky recommends taking a number of precautions before downloading an app.

Other steps you can take to protect yourself from fake apps include:

Featured image: ThreatFabric

< Back to 68k.news LB front page