Connect with us

Headlines

NCC discovers software that steals banking app login credentials

Published

on

Nasiru Yusuf

The Nigerian Communications Commission’s Computer Security Incident Response Team (CSIRT) has discovered a newly-hatched malicious software that steals users’ banking app login credentials on Android devices.

KANO FOCUS reports that a security advisory from the NCC CSIRT, the malicious software called “Xenomorph”, found to target 56 financial institutions from Europe, has high impact and high vulnerability rate.

According to a statement issued by commission’s spokesperson Ikechukwu Adinde the main intent of this malware is to steal credentials, combined with the use of SMS and Notification interception to log-in and use potential 2-factor authentication tokens.

The statement added that the Xenomorph is propagated by an application that was slipped into Google Play store and masquerading as a legitimate application called “Fast Cleaner” ostensibly meant to clear junk, increase device speed and optimize battery. In reality, this app is only a means by which the Xenomorph Trojan could be propagated easily and efficiently.

It noted that to avoid early detection or being denied access to the PlayStore, “Fast Cleaner” was disseminated before the malware was placed on the remote server, making it hard for Google to determine that such an app is being used for malicious actions.

To this end the statement cautioned that once up and running on a victim’s device, Xenomorph can harvest device information and Short Messaging Service (SMS), intercept notifications and new SMS messages, perform overlay attacks, and prevent users from uninstalling it. The threat also asks for Accessibility Services privileges, which allow it to grant itself further permissions.

The CSIRT said the malware also steals victims’ banking credentials by overlaying fake login pages on top of legitimate ones. Considering that it can also intercept messages and notifications, it allows its operators to bypass SMS-based two-factor authentication and log into the victims’ accounts without alerting them.

“Xenomorph has been found to target 56 internet banking apps, 28 from Spain, 12 from Italy, 9 from Belgium, and 7 from Portugal, as well as Cryptocurrency wallets and general-purpose applications like emailing services. The Fast Cleaner app has now been removed from the Play Store but not before it garnered 50,000+ downloads,” the CSIRT security advisory asserted.

The Nigerian Communications Commission hereby wishes to advise telecom consumers to be on alert in order not to fall victim to this manipulation.

Accordingly, the NCC urges telecom consumers and other Internet users, particularly those using Android-powered devices to use trusted Antivirus solutions and update them regularly to their latest definitions.

The Commission also implore consumers and other stakeholders to always update banking applications to their most recent versions.

Click to comment

Leave a Reply

Your email address will not be published. Required fields are marked *

Headlines

Majidadin Dambatta congratulates Doguwa on emergence as Kano APC chairman

Published

on

 

Nasiru Yusuf Ibrahim

 

Alhaji Aliyu Lawan, popularly known as Majidadin Dambatta, has congratulated Alhaji Umar Haruna Doguwa on his election as Chairman of the All Progressives Congress (APC) in Kano State.

 

In a congratulatory message shared via Facebook, Lawan described Doguwa’s emergence as well deserved and expressed confidence in his ability to lead the party effectively in the state.

 

He also extended his congratulations to other executive members elected alongside Doguwa into various party offices, noting that their emergence reflects the trust and confidence reposed in them by party members and stakeholders across Kano State.

 

According to him, the development is a clear testament to the dedication, loyalty and commitment of the newly elected leaders to the unity, stability and progress of the party.

 

Lawan further prayed that Allah grants the new chairman and his team wisdom, strength and foresight as they assume the responsibility of steering the affairs of the APC in Kano State.

 

He expressed optimism that the new leadership would promote harmony, inclusiveness and effective leadership within the party, while bringing renewed vigour, unity and success to the APC in the state and beyond.

 

 

Continue Reading

Headlines

Kano Assembly issues impeachment notice to Deputy Governor Gwarzo

Published

on

 

Nasiru Yusuf Ibrahim

 

The Kano State House of Assembly has issued a notice of impeachment to the Deputy Governor of Kano State, Comrade Aminu Abdulsalam Gwarzo.

 

KANO FOCUS reports the notice followed the presentation of a report by the Majority Leader of the House, Hon. Lawan Hussaini Chediyar Yan Gurasa, during plenary on Wednesday. The sitting was presided over by the Speaker, Jibril Isma’il Falgore.

 

While presenting the report, the Majority Leader explained that the action was taken in line with Section 188 of the Constitution of the Federal Republic of Nigeria, which outlines the procedure for the impeachment of a governor or deputy governor.

 

According to him, the impeachment notice was endorsed by 38 members of the Assembly.

 

He further stated that once the notice is formally served on the deputy governor, he will have 14 days to respond to the allegations contained in the document.

 

The development marks the beginning of the constitutional process that could lead to the impeachment of the deputy governor if the procedure continues as stipulated by law.

Continue Reading

Headlines

Gov. Yusuf mourns former Kano finance commissioner, Prof. Dandago

Published

on

 

Nasiru Yusuf Ibrahim

 

Governor Abba Kabir Yusuf has expressed deep sorrow over the death of former Kano State Commissioner of Finance and renowned academic, Professor Kabiru Isa Dandago.

 

KANO FOCUS reports that the governor’s reaction was contained in a statement issued on Wednesday by his spokesperson, Sunusi Bature Dawakin Tofa, Director General, Media and Publicity, Government House, Kano.

 

Governor Yusuf described the late Prof. Dandago as a dedicated public servant and accomplished scholar whose contributions to education and governance left lasting footprints in Kano State.

 

He noted that the former finance commissioner served the state with integrity and commitment and was widely respected for his professionalism, humility and passion for knowledge.

 

According to the governor, Kano State has lost a valuable son whose experience and wisdom greatly enriched both public service and the academic community.

 

Governor Yusuf extended his heartfelt condolences to the family of the deceased, the academic community and the people of Kano State over what he described as an irreparable loss.

 

He prayed that Almighty Allah forgives the shortcomings of the late Prof. Dandago, grants him Aljannatul Firdaus and gives his family and loved ones the fortitude to bear the loss.

Continue Reading

Trending