Close Menu
The Daily PostingThe Daily Posting
  • Home
  • Android
  • Business
  • IPhone
    • Lifestyle
  • Politics
  • Europe
  • Science
    • Top Post
  • USA
  • World
Facebook X (Twitter) Instagram
Trending
  • Jennifer Lopez and Ben Affleck reveal summer plans after Europe trip
  • T20 World Cup: Quiet contributions from Akshar Patel, Kuldeep Yadav and Ravindra Jadeja justify Rohit Sharma’s spin vision | Cricket News
  • The impact of a sedentary lifestyle on health
  • Bartok: The World of Lilette
  • Economists say the sharp rise in the U.S. budget deficit will put a strain on Americans’ incomes
  • Our Times: Williams memorial unveiled on July 4th | Lifestyle
  • Heatwaves in Europe are becoming more dangerous: what it means for travelers
  • Christian Science speaker to visit Chatauqua Institute Sunday | News, Sports, Jobs
Facebook X (Twitter) Instagram
The Daily PostingThe Daily Posting
  • Home
  • Android
  • Business
  • IPhone
    • Lifestyle
  • Politics
  • Europe
  • Science
    • Top Post
  • USA
  • World
The Daily PostingThe Daily Posting
Android

Nasty iPhone, Android malware uses your face to infiltrate banking apps – here’s how it works

thedailyposting.comBy thedailyposting.comFebruary 16, 2024No Comments

[ad_1]

A new malware named GoldPickaxe is significantly impacting Android and iOS devices. The GoldPickaxe malware, discovered by Group-IB (via BleepingComputer), tricks users into installing a rogue app that scans their face and ID. This sensitive information is used to create deepfakes that allow threat actors to gain unauthorized access to banking apps.

The GoldPickaxe malware is developed by the Chinese hacker group GoldFactory, which is also responsible for the GoldDigger, GoldDiggerPlus, and GoldKefu malware. At the moment, the group appears to be primarily targeting Thailand and Vietnam, but these techniques could be used by GoldFactory or other malicious groups to target other countries. .

That being said, here’s how the GoldPickaxe malware works and what you should be aware of in the coming months.

How GoldPickaxe malware works on Android and iOS

From June 2023 until now, the GoldFactory malware group distributed multiple threat packages, most of which targeted only Android users. However, the latest GoldPickaxe malware from October 2023 targets both Android and iOS users.

Currently, phishing and smishing messages are causing damage on the LINE app, a popular messaging app in Japan, Taiwan, and Thailand. These messages, written in the user’s local language, impersonate government officials and trick victims into installing fraudulent apps like his Digital Pension app below from his website, which is similar to Google Play. Masu.

Digital pension app goldpickaxe malware

(Image credit: Group-IB)

GoldPickaxe malware can target iPhone users in two ways. First, it instructs the victim to open the Her TestFlight URL, which installs the legitimate Her TestFlight app in addition to the malware. If the TestFlight method does not work, the GoldFactory group sends a malicious mobile device management (MDM) profile, and when the iPhone user downloads it, the threat group gains control of the device.

If someone unknowingly installs this Trojan, it can read incoming SMS messages, control the phone’s background features, request identification, and capture the victim’s face. Masu. BleepingComputer points out that “it is her Group-IB belief that the victim’s face is used for bank fraud,” which is “corroborated by Thai police.”

goldpickaxe malware captures faces

(Image credit: Group-IB)

Despite the fact that GoldPickaxe malware can capture the victim’s face and steal images, it cannot access official biometric data on Android or iOS. Biometric data is encrypted and stored separately from running apps.

According to Group-IB, Android users are at higher risk than iOS users, in part because Apple has higher security restrictions, and also because GoldPickaxe has installed more than 20 different apps on Android. Because you are using a fake app. Additionally, the iOS 17 update added these three innovative security features to many iPhones.

[ad_2]

Source link

thedailyposting.com
  • Website

Related Posts

Qualcomm wants to make it easier for phone makers to issue Android updates

June 28, 2024

Qualcomm wants to make Android updates easier for OEMs

June 28, 2024

What’s new in the June 2024 Google system update for Android

June 28, 2024
Leave A Reply Cancel Reply

ads
© 2025 thedailyposting. Designed by thedailyposting.
  • Home
  • About us
  • Contact us
  • DMCA
  • Privacy Policy
  • Terms of Service
  • Advertise with Us
  • 1711155001.38
  • xtw183871351
  • 1711198661.96
  • xtw18387e4df
  • 1711246166.83
  • xtw1838741a9
  • 1711297158.04
  • xtw183870dc6
  • 1711365188.39
  • xtw183879911
  • 1711458621.62
  • xtw183874e29
  • 1711522190.64
  • xtw18387be76
  • 1711635077.58
  • xtw183874e27
  • 1711714028.74
  • xtw1838754ad
  • 1711793634.63
  • xtw183873b1e
  • 1711873287.71
  • xtw18387a946
  • 1711952126.28
  • xtw183873d99
  • 1712132776.67
  • xtw183875fe9
  • 1712201530.51
  • xtw1838743c5
  • 1712261945.28
  • xtw1838783be
  • 1712334324.07
  • xtw183873bb0
  • 1712401644.34
  • xtw183875eec
  • 1712468158.74
  • xtw18387760f
  • 1712534919.1
  • xtw183876b5c
  • 1712590059.33
  • xtw18387aa85
  • 1712647858.45
  • xtw18387da62
  • 1712898798.94
  • xtw1838737c0
  • 1712953686.67
  • xtw1838795b7
  • 1713008581.31
  • xtw18387ae6a
  • 1713063246.27
  • xtw183879b3c
  • 1713116334.31
  • xtw183872b3a
  • 1713169981.74
  • xtw18387bf0d
  • 1713224008.61
  • xtw183873807
  • 1713277771.7
  • xtw183872845
  • 1713329335.4
  • xtw183874890
  • 1716105960.56
  • xtw183870dd9
  • 1716140543.34
  • xtw18387691b

Type above and press Enter to search. Press Esc to cancel.