DroidBot Malware Hits French Banks: $3,000 Trojan Steals Credentials, Evades Detection
December 9, 2024
A new malware known as DroidBot has targeted nine banks in France, capturing banking credentials and allowing remote control of banking applications.
The French Banking Federation announced that clients of French banks have unknowingly fallen victim to this malware while attempting to update their phones.
Users are often tricked into downloading harmful applications from unofficial sources, increasing their risk of infection.
DroidBot, identified in June 2024, can intercept SMS messages, create fake login pages, and log keystrokes, enabling the theft of personal information.
The malware also allows hackers to gain remote access to infected devices, enabling them to bypass security alerts.
Cleafy warns that DroidBot is still under development, with hackers continuously enhancing its capabilities.
To combat the threat, the French Banking Federation advises users to download content only from trusted sources and to regularly update their devices.
Cybersecurity experts report a 67% rise in malware exposure in 2023, making it the fourth most common cyber threat for individuals.
The Federation emphasizes that security remains a major concern for banks as they face increasing threats from malware.
Despite the malware's impact, the Federation denied allegations of a cyberattack against the banks, clarifying that no bank applications were specifically targeted.
Affected banks include major institutions such as BNP Paribas, Axa Banque, and Société Générale, with similar incidents reported across the UK, Italy, Spain, and Portugal.
Cleafy, the cybersecurity firm that discovered DroidBot, noted that this Trojan infiltrates Android smartphones and is challenging for antivirus software to detect.
Summary based on 0 sources