Symtrex Inc.

Cyber Security Specialist

Call - 866-431-8972 | Send an Email | Request a Quote
Visit Us On FacebookVisit Us On TwitterVisit Us On Linkedin

Profile

 [metaslider id=2951] … Read More

  • Home
  • Profile
    • Contact Us
    • Security News
    • White Papers
  • Services
    • Compliance Regulations
      • PCI DSS Suite of Products
      • HIPAA/Hitech
      • SOX – Sarbanes Oxley
      • DCID 6/3/NISPOM Chapter 8/JAFAN DoD
      • NERC/FERC
    • Industry Consulting and Implementation
      • Banking and Financial
      • Energy/Utilities
      • Healthcare
      • Retail/Hospitality
    • Security Assessment
  • Security Solutions
    • Sophos
    • Endpoint Security Solutions
      • Bitdefender Business Solutions
      • Sophos Endpoint Protection
    • Forensic Solution – Threat Hunter
    • Network Access Control
      • NetShield
        • NetShield
    • NGFW – UTM – Perimeter Security
      • Sophos Network Protection
    • Security Awareness Training
      • KnowBe4 – Security Awareness Training
      • Sophos Phish Threat
  • White Papers
    • Sophos Webinar Series
  • Security News
    • Blog
    • Sophos Webinar Series
  • Free Security Tools

New Malware Steals $4 Million at U.S., Canada Banks

2016/04/15 by admin

Malware uses email to target bank customers with business accounts, IBM cybersecurity researchers say

By:Robin Sidel

April 14, 2016 5:53 p.m. ET

Cybersecurity researchers at IBM Corp. said Thursday they have discovered a new type of malicious software that has been used to attack customers of 22 U.S. banks and two in Canada.

The attacks have resulted in the theft of roughly $4 million dollars in the first few days of April, the researchers said.

The malware is targeting bank customers with business accounts, mostly at banks in the U.S., according to a blog posting on IBM X-Force, which is part of IBM’s security business. The malware also focuses on credit unions and “popular” e-commerce platforms.

IBM Security didn’t identify the institutions, but said they have been alerted to the incidents and have taken measures to stop the attacks.

Unlike other recent attacks that are aimed at the bank directly or its employees, the latest incidents use email to target account holders, said Etay Maor, executive security adviser at IBM Security. The malware is installed when the account holder clicks on an email link or attachment and remains dormant until the victim logs onto his bank account.

The malware can then access information in multiple ways, recording keystrokes or even taking pictures of the bank account screen.

“It all happens without the user seeing anything,” Mr. Maor said. The malware can also send the victim emails that appear to come from the bank.

The malware, called GozNym, is a hybrid of two other types of malware “that takes the best of both,” according to the blog post. It combines two techniques that are used to infect devices and steal data, making it easier for criminals to attack.

The attackers are believed to originate from a criminal organization in Eastern Europe, Mr. Maor said.

Filed Under: Advanced Persistent Threat, antivirus, CyberThreats, endpoint, Security News

Let us help answer any questions you may have

requestmoreinformation.fw

Security News and Updates

  • Was my information part of a breach?
  • Phishing and stolen credentials
  • Ransomware is the Biggest Threat for Small to Medium Businesses

RSS SecurityWeek

  • US Charges 20-Year-Old Head of Hacker Site BreachForums
  • Tesla Hacked Twice at Pwn2Own Exploit Contest
  • CISA Ships ‘Untitled Goose Tool’ to Hunt for Microsoft Azure Cloud Infections

Contact

  • Contact Us

Request More Info

  • Request Quote

Site Map

  • Site Map

© Copyright 2016 Symtrex Inc. ; All Rights Reserved · Privacy Statement