New Year, New Capabilities: Infamous Ginp Banker Now Spurs Victims to Loose Credentials via Fake SMS
Kaspersky researchers identified a new version of the Ginp banking Trojan, first discovered by the company’s analyst in 2019. Apart from the standard functions of Android-focused bankers – capacities to intercept and send SMS, perform window overlays – the new resurfaced version involves a highly unconventional function to insert fake text messages into the Inbox of a regular SMS app.
These messages appear under the guise of reputable vendors informing users about an undesired event (blocked account access, for example). To prevent this, the user is requested to open the application. Once victims do that, the Trojan overlays the original window and asks them to input the credentials for a credit card or a bank account. As a result, their payment details are handed over to cybercriminals.
“Ginp is simple, but efficient—and effective. And the rate at which it evolves and acquires new capabilities is concerning. While this attack has so far only been seen in Spain, based on our previous experience, this Trojan could begin to emerge in other countries as well; Android users need to be on alert,” says Alexander Eremin, security expert at Kaspersky.
Kaspersky products successfully detect and block the threat.
To reduce the risk of being exposed to Ginp or other banking Trojans, Kaspersky experts recommend:
- Only download apps from the official Google Play Store
- Pay attention to what permissions apps requests—they shouldn’t be asking for access to SMS
- Install an antivirus solution on your phone, like Kaspersky Antivirus & Security for Android
Read the full report on by the link.
Background Information
Kaspersky
Kaspersky is a global cybersecurity company founded in 1997. Kaspersky’s deep threat intelligence and security expertise is constantly transforming into innovative security solutions and services to protect businesses, critical infrastructure, governments and consumers around the globe. The company’s comprehensive security portfolio includes leading endpoint protection and a number of specialized security solutions and services to fight sophisticated and evolving digital threats. Over 400 million users are protected by Kaspersky technologies and we help 250,000 corporate clients protect what matters most to them. Learn more at www.kaspersky.com.