SoumniBot: the new Android banker’s unique techniques


The creators of widespread malware programs often employ various tools that hinder code detection and analysis, and Android malware is no exception.

As an example of this, droppers, such as Badpack and Hqwar, designed for stealthily delivering Trojan bankers or spyware to smartphones, are very popular among malicious actors who attack mobile devices. That said, we recently discovered a new banker, SoumniBot, which targets Korean users and is notable for an unconventional approach to evading analysis and detection, namely obfuscation of the Android manifest.

Read more…
Source: Kaspersky


Sign up for our Newsletter


Related:

  • Lloyds Bank Hit with DDoS Attack for Three Days Straight, Reasons Yet Unknown

    January 23, 2017

    Lloyds Bank was hit with a DDoS attack for three days straight as hackers tried to crash the website, managing to cause intermittent outages for customers on the personal banking websites. It seems that it all happened two weeks ago, starting on January 11 and ending on Friday 13, the Financial Times reports. The largest lender in ...

  • Hedge funds to invest more in technology and cyber defence

    January 12, 2017

    Investments by hedge funds into technology advancement is set to increase in the coming five years, as more executives within the industry become concerned about the impact of technology on their competitiveness. A new report finds that they will leverage a broad range of investment strategies to meet needs, from building their own systems to outsourcing. ...