New Ginp banking malware targets credit/debit card information via screen overlay
By MYBRANDBOOK
A new form of sophisticated Android banking malware named “Ginp” has been uncovered by researchers. It targets Android users via screen overlay attack to steal banking credentials, SMS & credit/debit card details to empty victims’ bank account.
The Ginp malware was initially spotted at the end of the October 2019; since then the malware is continuously under development, and 5 different versions of the Trojan have been released.
It is being studied that attackers are mainly interested in Spanish based bank users. They are also continuously releasing regular updates, and some evidence found the Gip malware copying code from infamous Anubis banking Trojan.
Ginp is using multiple step overlay to avoid raising suspicion and the initial version was distributed via fake "Google Play Verificator” app to steal the only incoming and outgoing SMS data.’
The next version has been released with a set of new features and spreading via masquerading as a fake “Adobe Flash Player” app to target some of the social and utility apps such as Google Play, Facebook, WhatsApp, Chrome, Skype, Instagram, and Twitter.
The 3rd version of Ginp is launched to focus on Banking sectors, and the attackers mainly target the 24 apps belonging to 7 different Spanish banks: Caixa bank, Bankinter, Bankia, BBVA, EVO Banco, Kutxabank and Santander.
Once the malware landed into the device, as a first step, it removes the icon and seeks the victim for the Accessibility Service privilege. After it gets the permission, the Ginp itself grants some of the sensitive additional permission, such as send messages, and make calls, without requiring any further action from the victim.
Ginp targets various social media apps such as Facebook, WhatsApp, Skype, Twitter, Chrome, Instagram, Snapchat and implements the generic credit card grabber overlay screen to harvest the card number, CVV, Date etc.
Nazara and ONDC set to transform in-game monetization with ‘
Nazara Technologies has teamed up with the Open Network for Digital Comme...
Jio Platforms and NICSI to offer cloud services to government
In a collaborative initiative, the National Informatics Centre Services In...
BSNL awards ₹5,000 Cr Project to RVNL-Led Consortium
A syndicate led by Rail Vikas Nigam Limited (abbreviated as RVNL), along wi...
Pinterest tracks users without consent, alleges complaint
A recent complaint alleges that Pinterest, the popular image-sharing platf...
GLOBUS INFOCOM LTD.
EXATRON SERVERS MANUFACTURING PVT. LTD.
BHARAT ELECTRONICS LTD.
WIPRO LTD.
Icons Of India : Bhavish Aggarwal
Indian entrepreneur Bhavish Aggarwal is the CEO of Ola, India’s larg...
Icons Of India : Anil Agarwal
Anil Agarwal, the Founder and Chairman of Vedanta Resources Ltd., is r...
Icons Of India : Harsh Jain
Harsh Jain, the co-founder of Dream 11, the largest fantasy sports web...
ITI - ITI Limited
ITI Limited is a leading provider of telecommunications equipment, sol...
C-DAC - Centre for Development of Advanced Computing
C-DAC is uniquely positioned in the field of advanced computing...
IREDA - Indian Renewable Energy Development Agency Limited
IREDA is a specialized financial institution in India that facilitates...
Indian Tech Talent Excelling The Tech World - Steve Sanghi, Executive Chair, Microchip
Steve Sanghi, the Executive Chair of Microchip Technology, has been a ...
Indian Tech Talent Excelling The Tech World - Aman Bhutani, CEO, GoDaddy
Aman Bhutani, the self-taught techie and CEO of GoDaddy, oversees a co...
Indian Tech Talent Excelling The Tech World - REVATHI ADVAITHI, CEO- Flex
Revathi Advaithi, the CEO of Flex, is a dynamic leader driving growth ...