A new malware has been found to target debit, credit cards and online banking transactions made through Android mobile handsets, according to Russian cyber security firm Kaspersky Lab.

According to antivirus specialists, the malware is a variation of the Sypeng Trojan and was currently configured to mimic Russian banks as a mobile banking app. It replaces the open window with its own to discover the password and has already spread to a number of countries including the US, Germany, Belarus and Ukraine.

The company has warned Android users to be aware of the malware and proposed some steps such as switching off ‘allow installation from unknown sources’ in security settings, using Google Play to download apps, not using non-trusted third-party app stores, and checking permission requested by new app among others.

Kaspersky Lab senior malware analyst Roman Unuchek was quoted by humanipo as saying that the Trojan phishes for credit card and online banking credentials continuing the well established track record of monetary theft from unsuspecting victims on the platform.

"No doubt, we will see new versions of the Trojan that will able to steal from clients of various banks in multiple countries very soon.

"The current version spread itself using SMS spam, but other variations might utilize another infection tactic," Unuchek added.

How well do you really know your competitors?

Access the most comprehensive Company Profiles on the market, powered by GlobalData. Save hours of research. Gain competitive edge.

Company Profile – free sample

Thank you!

Your download email will arrive shortly

Not ready to buy yet? Download a free sample

We are confident about the unique quality of our Company Profiles. However, we want you to make the most beneficial decision for your business, so we offer a free sample that you can download by submitting the below form

By GlobalData
Visit our Privacy Policy for more information about our services, how we may use, process and share your personal data, including information of your rights in respect of your personal data and how you can unsubscribe from future marketing communications. Our services are intended for corporate subscribers and you warrant that the email address submitted is your corporate email address.