Hackers Targeting 59 Banking, Fintech and Crypto Platforms, Stealing Credentials, PINs and More: Report
Hackers are reportedly targeting 59 banking, fintech, and cryptocurrency platforms while spreading through popular applications such as WhatsApp and Outlook. A trojan known as TCLBanker is infecting Windows systems through tainted Microsoft installation packages, according to a report by BleepingComputer. Discovered by Elastic Security Labs, researchers believe TCLBanker is a significant evolution of the older Maverick and Sorvepotel malware family.
The malware is sophisticated, checking infected devices for timezone, keyboard layout, and locale. It includes worm modules that enable it to spread automatically through WhatsApp and Microsoft Outlook. Once a targeted site is accessed, TCLBanker establishes a WebSocket session with its command-and-control server to initiate remote control operations.
The capabilities of the malware operator are alarming, including live screen streaming, taking screenshots, keylogging, hijacking the clipboard, executing shell commands, accessing the file system, and remotely controlling the mouse and keyboard. Additionally, TCLBanker employs fake overlay screens to gather sensitive information like credentials, PINs, and phone numbers. These overlays can mimic credential prompts, PIN keypads, bank support waiting screens, Windows Update screens, and fake progress screens.
The primary targets of TCLBanker seem to be apps in Brazil. The malware closely monitors a victim’s browser address bar every second, looking for visits to any of the 59 targeted platforms. This level of surveillance and sophistication poses a significant threat to the security of banking and financial institutions.
To stay updated on the latest news and developments in the cryptocurrency and cybersecurity space, follow The Daily Hodl on X, Facebook, and Telegram. Don’t miss out on important updates – subscribe to get email alerts delivered directly to your inbox. Stay informed and protected in the ever-evolving world of digital threats.
Remember to surf The Daily Hodl Mix for a diverse range of content and insights. Stay vigilant and protect yourself from potential cyber attacks. Stay safe online!
Image credit: Midjourney.



