New wave of Trojans attacking co-operative banks! Stop this RAT attack, don't do this
Indian co-operative banks need to be extra careful as a new wave of Adwind Java Remote Access Trojan (RAT) campaign is targeting their accounts using Covid-19 as a bait.
Indian co-operative banks need to be extra careful as a new wave of Adwind Java Remote Access Trojan (RAT) campaign is targeting their accounts using Covid-19 as a bait. According to researchers at Seqrite – a specialist provider of cybersecurity products and services – the attackers can take over the victim’s device to steal sensitive data like SWIFT logins and customer details and move laterally to launch large scale cyberattacks and financial frauds.
How RAT attacks are pulled off?
The researchers explain that the Java RAT campaign starts with a spear-phishing email which claims to have originated from either Reserve Bank of India or a nationalized bank. This email refers to COVID-19 guidelines or a financial transaction, with detailed information in an attachment, which is a zip file containing a JAR based malware.
The JAR based malware is a Remote Access Trojan that can run on any machine which has Java runtime enabled and hence it can impact variety of endpoints, irrespective of their base Operating System. Once the RAT is installed, the attacker can take over the victim’s device, send commands from a remote machine, and spread laterally in the network.
WATCH Zee Business TV LIVE Streaming Online
The malware can also log keystrokes, capture screenshots, download additional payloads, and extract sensitive user information.
What information can be sold?
These attacks can give hackers access to sensitive data at the co-operative banks and result in large scale attacks and financial frauds. This data leak helps the attacker to plan the next phase of attack including targeted attacks. Backdoors often lead to stealing of credentials for important financial infrastructure like SWIFT logins. This can lead to big financial loses to banks. We have previously seen incidences where banks had to face large financial losses due to such attacks.
How to stay safe?
It is required to timely detect and block such campaigns. The researchers recommend users to exercise ample caution and avoid opening attachments and clicking on web links in unsolicited emails. Banks should also keep their Operating Systems updated and have a full-fledged security solution installed on all the devices.
Get Latest Business News, Stock Market Updates and Videos; Check your tax outgo through Income Tax Calculator and save money through our Personal Finance coverage. Check Business Breaking News Live on Zee Business Twitter and Facebook. Subscribe on YouTube.
RECOMMENDED STORIES
Power of Compounding: How soon will monthly SIP of Rs 6,000, Rs 8,000, and Rs 10,000 reach Rs 5 crore corpus target?
SBI Guaranteed Return Scheme: Know how much maturity amount you will get on Rs 2 lakh, 2.5 lakh, 3 lakh, 3.5 lakh and Rs 4 lakh investments under Amrit Vrishti FD scheme
EPFO Pension Schemes: Early pension, retirement pension, nominee pension and 4 other pension schemes that every private sector employee should know
SBI Senior Citizen Latest FD Rates: What senior citizens can get on Rs 7 lakh, Rs 14 lakh, and Rs 21 lakh investments in Amrit Vrishti, 1-, 3-, and 5-year fixed deposits
SIP vs PPF: How much corpus you can build in 15 years by investing Rs 1.5 lakh per year? Understand through calculations
01:12 PM IST