New Cyber Alert – New Nexus Trojan on Android, Attacking Mobile Banking Accounts
The new Android trojan is being spread through phishing pages disguised as legitimate websites called YouTube Vanced. The botnet, named Nexus, was first made available on a forum in January 2023 for a monthly fee of $3,000 and was described as a “very new” project under “continuous development”. With the rise of the malware-as-a-service model, more hackers are gaining access to this malware by paying for access to additional malware. Once the Nexus trojan infiltrates a victim’s bank accounts, it can drain and steal funds through overlay attacks, where a fake version of a legitimate banking app is superimposed on top of it.
What is the Nexus Trojan Malware?
Capable of operating covertly, the Nexus trojan can avoid detection and security measures. Once installed on a device, it has the ability to intercept and log sensitive information including login credentials, credit card details, and other financial data. The trojan can even copy, log and forward two-factor authentication codes, whether they are sent via text or from the Google Authenticator app. Additionally, it can delete text messages received on the infected device, halt the 2-factor authentication stealer module, and regularly update itself by communicating with a command-and-control server controlled by cyber criminals.
How Can you Protect Yourself?
Implementing Mobile Device Management (MDM), paired with advanced Sign On Authentication tools such as Duo, you can ensure that your mobile devices will be protected from the latest Cyber Threats. Mobile Device Management can ensure that; only Authorised Applications can be downloaded, only specific applications have access to phone features such as clipboard, screen recording, camera & more, protecting your sensitive business information from being accessed by unauthorised applications or malware. Duo authentication also ensures that many of your business applications are protected from unauthorised access by adding in a secondary security step that is not vulnerable to these common authentication code stealer methods.
Latest News Stories
To pay or not to pay – What’s the Cost of a Ransomware Attack
The importance of having an effective cyber security system has never been more important, regardless of the size of your business, you should have an effective Cyber Security Policy, Procedure and Process in place. Recently, well-known car manufacture, Ferrari fell...
Thousands of Abuse Victims Data Stolen
The data of hundreds of sexual abuse victims has been compromised in a ransomware attack that targeted a company managing information for approximately 140 charities and non-profit organisations across Ireland, Northern Ireland, and the UK. It is believed that highly...
Update Google Chrome to Protect your Business from this Zero Day Threat
Google's Chrome browser, used by over three billion users worldwide, recently encountered its first Zero-Day exploit of the year. In response, Google has issued an urgent update to address the discovered vulnerability, CVE-2023-2033, which affects Chrome on Windows,...
Our Customers
Testimonials
Roy, Green Care Group
Prompt, efficient & friendly service.
Dawn Brown, V & P Solutions
Fast, efficient service – problem was quickly resolved.
Rachel Warne, Bank View Farm
Professional, friendly, don’t blind you with technical jargon, get things sorted quickly.