New Cyber Alert – New Nexus Trojan on Android, Attacking Mobile Banking Accounts
The new Android trojan is being spread through phishing pages disguised as legitimate websites called YouTube Vanced. The botnet, named Nexus, was first made available on a forum in January 2023 for a monthly fee of $3,000 and was described as a “very new” project under “continuous development”. With the rise of the malware-as-a-service model, more hackers are gaining access to this malware by paying for access to additional malware. Once the Nexus trojan infiltrates a victim’s bank accounts, it can drain and steal funds through overlay attacks, where a fake version of a legitimate banking app is superimposed on top of it.
What is the Nexus Trojan Malware?
Capable of operating covertly, the Nexus trojan can avoid detection and security measures. Once installed on a device, it has the ability to intercept and log sensitive information including login credentials, credit card details, and other financial data. The trojan can even copy, log and forward two-factor authentication codes, whether they are sent via text or from the Google Authenticator app. Additionally, it can delete text messages received on the infected device, halt the 2-factor authentication stealer module, and regularly update itself by communicating with a command-and-control server controlled by cyber criminals.
How Can you Protect Yourself?
Implementing Mobile Device Management (MDM), paired with advanced Sign On Authentication tools such as Duo, you can ensure that your mobile devices will be protected from the latest Cyber Threats. Mobile Device Management can ensure that; only Authorised Applications can be downloaded, only specific applications have access to phone features such as clipboard, screen recording, camera & more, protecting your sensitive business information from being accessed by unauthorised applications or malware. Duo authentication also ensures that many of your business applications are protected from unauthorised access by adding in a secondary security step that is not vulnerable to these common authentication code stealer methods.
Latest News Stories
The Cyber Security Landscape is changing, and we are changing with it!
Due to the current Cyber Security climate, and the increasing risk that our customers face, we have taken the decision to increase our Minimum Level of protection that our Total Care and Enhanced Care customers must achieve for us to confidently provide the level of...
Is there an Increased risk to Cyber Attack with ChatGPT – BlackMamba ChatGPT Polymorphic Malware
There is an abundance of cyber security companies that have been using Artificial Intelligence (AI), Machine Learning (ML) & Large Language Models (LLM’s) since their inceptions for a wide variety of purposes. Recent proof-of-concept (PoC) attacks, such as...
Cyber Criminals SEO Poisoning Attack Attempts
Safeguard Your Business From An SEO Poisoning Attack In an era where digital presence is paramount for businesses, the threat of an SEO poisoning attack looms large, posing a significant risk to the online visibility and reputation of companies. In this blog we will...
Our Customers
Testimonials
Jeanette, Principle Support Ltd
One2Call staff are very helpful and friendly and they do have a fast turnaround with our enquiries. Thank you very much.
Daniel, Motorfinity
Our move and installation of new IT infrastructure and phone systems couldn’t have been any smoother. The advice we had and technical guidance and support meant we felt totally at ease. Would definitely recommend One2call!
Abbeyfield School
Very efficient and clean up after job. Very competitive prices.