MalwareSecurity

PIN-Stealing Android Malware – Schneier on Security

PIN-Stealing Android Malware

This is an old piece of malware—the Chameleon Android banking Trojan—that now disables biometric authentication in order to steal the PIN:

The second notable new feature is the ability to interrupt biometric operations on the device, like fingerprint and face unlock, by using the Accessibility service to force a fallback to PIN or password authentication.

The malware captures any PINs and passwords the victim enters to unlock their device and can later use them to unlock the device at will to perform malicious activities hidden from view.

Posted on January 9, 2024 at 7:03 AM •
0 Comments

Sidebar photo of Bruce Schneier by Joe MacInnis.

Leave a Reply

Your email address will not be published. Required fields are marked *

Back to top button