Growing interest in 'big money' is reflected in a sharp rise in the number of banking Trojans over the last year. Most of these ultimately involve an ATM cash-out.
August 4, 2014
In its Q2 threat report, issued today, Kaspersky Lab todaysaid its products detected and neutralized a staggering 995,534,410 threats during the quarter. In particular, the Woburn, Massachusetts-based company saw an increase in online banking threats and mobile malware. The main targeted attacks during the quarter included:
Web-based attacks
Mobile threats
Q2 exposed the activities of the Hacking Team, an Italian company that sells "legal" software called Remote Control System. The iOS module allows an attacker to access data on the device, to activate the microphone and to take photos.
Ransomware technology proved to be actively developing throughout the quarter. In early June, Kaspersky Lab detected a new modification of Svpeng aimed primarily at users in the US. The Trojan locks the phone and demands $200 to unlock it.
According to Alexander Gostev, chief security expert on the global research and analysis team at Kaspersky Lab:
The first six months of the year have shown that, as predicted, encryption of user data on smartphones has evolved. Criminals are making money by using methods that have proven effective for PC users. The growing interest in 'big' money among those carrying out these attacks is obvious — reflected in a sharp rise (14.5 times) in the number of banking Trojans over the last year. In addition to the financial benefits, the surveillance technology race is showing no letup. HackingTeam mobile modules showed that a mobile device can be used to gain complete control over the whole environment in and around a victim's device.
Online banking threats
Malicious objects
•60 million unique malicious objects (scripts, web pages, exploits, executable files, etc.) were detected, double the figure for Q1 2014; and
•145.3 million unique URLs were recognized as malicious by web antivirus — 63.5 million more than in the previous quarter.
The full report is available at securelist.com