Close Menu
  • Home
  • Articles
    • Attacks
      • BEC
      • Data Breach
      • DDoS
      • Evasion Attacks
      • Injection
      • Malware
      • MITM
      • Phishing
      • Ransomware
      • RCE
      • Social Engineering
      • Spoofing
      • Spyware
    • Business and Policy
      • BCP and DRP
      • GRC
      • Regulations
    • Data Protection
      • DLP
      • DRM
      • Encryption
      • IAM
    • Future, Trends and Insight
      • AI
      • Events & Community
      • Emerging Tech
      • Expert Panel
      • Interviews With Experts
      • Insights
      • Study & Research
    • Resources
      • Guides
      • Tools
      • Training & Education
    • Security
      • API
      • Apps
      • Cloud
      • Critical Infrastructure
      • Endpoint
      • Hardware
      • IoT
      • Mobile
      • Network
      • OT
      • Port Security
      • Security Architecture
      • Software Development
      • Supply Chain
      • Zero Trust
    • Threats and Vulnerabilities
      • Emerging Threats
      • Insider Threats
      • Risk Management
      • Threat Intelligence
      • Zero Day
  • News and Exclusives
    • Latest News
    • ISB Exclusive
    • Positive News
  • Who We Are
    • About Us
    • Information Security Buzz Expert Panel​
    • Write for Us
    • Media Pack
  • Contact Us
  • Newsletter
Facebook X (Twitter) LinkedIn
Facebook X (Twitter) LinkedIn
Information Security BuzzInformation Security Buzz
  • Home
  • Articles
    • Attacks
      • BEC
      • Data Breach
      • DDoS
      • Evasion Attacks
      • Injection
      • Malware
      • MITM
      • Phishing
      • Ransomware
      • RCE
      • Social Engineering
      • Spoofing
      • Spyware
    • Business and Policy
      • BCP and DRP
      • GRC
      • Regulations
    • Data Protection
      • DLP
      • DRM
      • Encryption
      • IAM
    • Future, Trends and Insight
      • AI
      • Events & Community
      • Emerging Tech
      • Expert Panel
      • Interviews With Experts
      • Insights
      • Study & Research
    • Resources
      • Guides
      • Tools
      • Training & Education
    • Security
      • API
      • Apps
      • Cloud
      • Critical Infrastructure
      • Endpoint
      • Hardware
      • IoT
      • Mobile
      • Network
      • OT
      • Port Security
      • Security Architecture
      • Software Development
      • Supply Chain
      • Zero Trust
    • Threats and Vulnerabilities
      • Emerging Threats
      • Insider Threats
      • Risk Management
      • Threat Intelligence
      • Zero Day
  • News and Exclusives
    • Latest News
    • ISB Exclusive
    • Positive News
  • Who We Are
    • About Us
    • Information Security Buzz Expert Panel​
    • Write for Us
    • Media Pack
  • Contact Us
  • Newsletter
Subscribe
Information Security BuzzInformation Security Buzz
Home - News & Analysis - Mobile Banking Trojans Double And A Surge in Bitcoin Wallet Attacks
News & Analysis

Mobile Banking Trojans Double And A Surge in Bitcoin Wallet Attacks

ISBuzz TeamBy ISBuzz TeamApril 25, 2014Updated:July 30, 20245 Mins Read
Share LinkedIn Twitter Facebook Copy Link Email
removing-a-trojan-virus
Share
Facebook Twitter LinkedIn Email Copy Link
Quick AI Summary
ChatGPTClaudeGeminiGrokPerplexityDeepSeekCopilot

In December, Kaspersky Lab published its threat forecast for 2014. Three months later, the experts found that all three of their ‘end user forecasts’ had already been confirmed.    

They said that cybercriminals would target…

– your privacy, leading to greater popularity for VPN services and Tor-anonymisers. The number of people turning to the Darknet in an attempt to safeguard their personal data is indeed increasing. But as well as benevolent users, Tor continues to attract dark forces – anonymous networks can conceal malware activity, trading on illegal sites and money laundering. For example, in February, Kaspersky experts detected the first Android Trojan that uses a domain in the .onion pseudo zone as a C&C.

– your money.The experts expected cybercriminals to continue developing tools to steal cash. This was confirmed by the detection of Trojan-SMS.AndroidOS.Waller.a in March. It is capable of stealing money from QIWI electronic wallets belonging to the owners of infected smartphones. The Trojan currently only targets Russian users, but it is capable of spreading anywhere where e-wallets are managed using text messages. Cybercriminals also made use of some standard approaches such as spreading Trojans for mobiles that steal money with the help of malicious spam. With these the global reach is much greater – the Faketoken mobile banking Trojan, for example, has affected users in 55 countries, including users in Germany, Sweden, France, Italy, the UK and the US.

– in Q1 the number of mobile banking Trojans almost doubled from 1321 to 2503

– your Bitcoins. The expertsexpected considerable growth in the number of attacks targeting Bitcoin users’ wallets, Bitcoin pools and stock exchanges. In the first three months of the year there were lots of incidents that proved this prediction was correct. Among the more newsworthy were the hack of MtGox, one of the biggest bitcoin exchanges, the hacking of the personal blog and Reddit account of MtGox CEO, Mark Karpeles, and using them to post the MtGox2014Leak.zip, which actually turned out to be malware capable of searching for and stealing Bitcoin wallet files from victims.

In a bid to boost their illicit earnings, cybercriminals infect computers and use their resources to generate more digital currency. Trojan.Win32.Agent.aduro, the twelfth most frequently detected malicious object on the Internet in Q1, is an example of a Trojan used in this type of process.

The Living Dead: the resurrection of cyber-espionage operations

The first quarter also saw a major cyber-espionage incident: in February, Kaspersky Lab published a report on one of the most advanced threats at the current time named ‘The Mask’. The main target was confidential information belonging to state agencies, embassies, energy companies, research institutes and private investment companies, as well as activists from 31 countries. According to the researchers, the complexity of the toolset used by the attackers and several other factors suggest this could be a state-sponsored campaign.

“As well as new incidents, we saw the continuation of campaigns that had seemingly already ended. For instance, after cybercriminals had shut down all the known command servers involved in the Icefog operation, we detected a Java version of the threat. The previous attack had primarily targeted organisations in South Korea and Japan, but the new version, judging by the IP addresses tracked, was only interested in US organisations,” commented Alexander Gostev, Chief Security Expert, Global Research and Analysis Team.

Q1 in figures

– 33.2 per cent of user computers worldwide were subjected to at least one web-based attack during the past three months – a decrease of 5.9 percentage points compared to the same period last year.
– 39 per cent of neutralised web attacks were carried out using malicious web resources located in the US and Russia; the combined figure for the same two countries was 5 percentage points higher in Q1 2013. They were followed by the    Netherlands (10.8 per cent), Germany (10.5 per cent) and the UK (6.3 per cent).
– The proportion of threats targeting Android exceeded 99 per cent of all mobile malware. Mobile malware increased by one per cent over the quarter.
– At the end of 2013, Kaspersky Lab’s collection of mobile malware stood at 189,626, but in Q1 of 2014 alone 110,324 new malicious programs were added. By the end of the quarter, there were 299,950 samples in the collection.
The full report is available at securelist.com

About Kaspersky Lab

Kaspersky Lab is the world’s largest privately held vendor of endpoint protection solutions. The company is ranked among the world’s top four vendors of security solutions for endpoint users*. Throughout its more than 16-year history Kaspersky Lab has remained an innovator in IT security and provides effective digital security solutions for large enterprises, SMBs and consumers. Kaspersky Lab, with its holding company registered in the United Kingdom, currently operates in almost 200 countries and territories across the globe, providing protection for over 300 million users worldwide. Learn more at www.kaspersky.com.

ISBuzz Team
  • ISBuzz Team
    Air Canada Data Breach: BianLian Extortion Group Claims A Massive Heist Contrary To Airline’s Earlier Statement
  • ISBuzz Team
    Unprecedented DDoS Attack Rocks The Web: Tech Giants Reveal A Digital Tsunami
  • ISBuzz Team
    CISA Flags High-Severity Adobe Acrobat Reader Flaw Amid Active Exploits
  • ISBuzz Team
    Curl Security Alert: Patching A Critical Bug Averting Potential Cyber Catastrophe

The opinions expressed in this post belong to the individual contributors and do not necessarily reflect the views of Information Security Buzz.

Share. Facebook Twitter LinkedIn Email Copy Link

Related Posts

Roundcube RCE Vulnerability Disclosed Early Amid Active Exploitation

June 10, 20255 Mins Read

Roblox Under Fire: Lawsuit Alleges Secret Data Tracking of Kids

May 13, 20254 Mins Read

Fake Indian Government Portal Used to Spread Cross-Platform Malware in Suspected APT36 Campaign

May 13, 20253 Mins Read
ISB-Bora-Side-Bar

 
ISB-Bora-Side-Bar
Black ISB Logo

Information Security Buzz is an independent resource that provides the experts’ comments, analysis, and opinion on the latest Cybersecurity news and topics

X (Twitter) LinkedIn Facebook RSS

Working With Us

  • About Us
  • Advertise With Us
  • Contact Us

Write For Us

  • How To Contribute

The Pages

  • Privacy Policy
  • Cookie Policy
  • AI Policy
  • Terms & Conditions
  • Copyright Notice

Information Security Buzz and all its contents are copyright © 2014-2025. All rights reserved. All third-party trademarks are recognized.

Type above and press Enter to search. Press Esc to cancel.

Manage Consent
To provide the best experiences, we use technologies like cookies to store and/or access device information. Consenting to these technologies will allow us to process data such as browsing behavior or unique IDs on this site. Not consenting or withdrawing consent, may adversely affect certain features and functions.
Functional Always active
The technical storage or access is strictly necessary for the legitimate purpose of enabling the use of a specific service explicitly requested by the subscriber or user, or for the sole purpose of carrying out the transmission of a communication over an electronic communications network.
Preferences
The technical storage or access is necessary for the legitimate purpose of storing preferences that are not requested by the subscriber or user.
Statistics
The technical storage or access that is used exclusively for statistical purposes. The technical storage or access that is used exclusively for anonymous statistical purposes. Without a subpoena, voluntary compliance on the part of your Internet Service Provider, or additional records from a third party, information stored or retrieved for this purpose alone cannot usually be used to identify you.
Marketing
The technical storage or access is required to create user profiles to send advertising, or to track the user on a website or across several websites for similar marketing purposes.
  • Manage options
  • Manage services
  • Manage {vendor_count} vendors
  • Read more about these purposes
View preferences
  • {title}
  • {title}
  • {title}