Zeus/Zbot Trojan is in its Activities Again
By Gina on July 15, 2010 | Computer Security, attack, hacker, Trojan, credit card, US banks, malware, fraud, MasterCard, Visa, Trusteer
Security company Trusteer reports about a new attempt to commit a crime by attacking customers of 15 unnamed US banks. Trojan is reported to be abusing the Verified by Visa and MasterCard SecureCode verification systems.
Malware inserts its malicious intensions at the moment when user is registering for the first time by both major issuers, Mastercard and Visa. It provides convincing sign up screen by imitating legal registration window.
This is very dangerous because malware gains to get important private data from user, including social security and card numbers, and PIN or card verification codes. This is done by hackers in a real time.
An interesting thing is that, once this enrollment has been set up, only a password is asked for by the system when purchasing items online.
Trusteer CTO, Amit Klein claims: „While some users may become suspicious when prompted to enter their credit/debit card information as part of the online banking login process, this attack uses the familiar Visa and MasterCard online fraud prevention programs to make the request appear legitimate.“
„Fortunately, online banking customers protected by Trusteer Rapport are not vulnerable to this attack since it blocks HTML injection and prevents Zeus from presenting the fraudulent enrollment request,“ he added.
More Computer Security news
Adobe news: Sandboxed Flash Player for Firefox released
This week Adobe launched a beta version of Flash Player for Firefox. This version is better for its sandbox feature. A platform security strategist at Adobe, Peleus Uhley said in a blog: "The design of this sandbox is similar to what Adobe delivered with Adobe Reader X Protected Mode and follows the same Practical Windows Sandboxing approach. Read more.- How to get PDF secured?
- 'Nazileaks' site is hacked by hacker group Anonymous
- Spywared.com wishes you happy holidays!
- Silent IE updates
- Anonymous and Team Poison duet create Operation Robin Hood
- Unprotected data still remains at British businesses
- 12 vulnerabilities are fixed by Adobe
- Be ready for Halloween scare on Internet: avoid scam attacks
- Who's fault is the mess on Youtube?
- Survey reveals overconfidence about security systems








