FB pixel

Malware variant won’t compromise mobile biometrics, but it will neuter the code

Malware variant won’t compromise mobile biometrics, but it will neuter the code
 

Biometrics security on mobile devices is great unless it’s not turned on. Or if it gets turned off.

Researchers with a Dutch computer services firm have identified a variant of a known banking trojan that forces a device to switch from biometric authentication to PIN authentication. ThreatFabric says the malware can then unlock the device.

ThreatFabric says in a new report that the Android-specific Chameleon banking-focused trojan became a security problem in January. Chameleon is doing the most damage right now in Australia (where it specifically focuses on the nation’s tax office) and Poland.

It has been distributed on phishing pages doctored to look like legitimate apps. The new variant is distributed on the Zombinder platform on which criminals bind malware to Android apps.

The ability to sideline biometric security is new in the update. ThreatFabric’s report details how the hack works.

Biometric identifiers are untouched in this variant.

Nonetheless, the new Chameleon variant is not good news for the mobile biometric security market and raises the question, can biometric systems be created with their own defenses against being leapfrogged?

Article Topics

 |   |   |   |   | 

Latest Biometrics News

 

UK security industry should complete OneLogin adoption to save money

Gov.uk OneLogin should be in place for the UK’s the Security Industry Authority (SIA) by the fourth quarter of the…

 

Fraud intelligence software launched by Facephi, Feedzai

Facephi and Feedzai have introduced new fraud prevention products to complement their biometrics offerings. Smart Eye Technology and Resistant AI…

 

Documents aim to lay out use cases, standards for mobile driver’s licenses

The Secure Technology Alliance’s (STA) Identity and Access Forum has released a new resource on mobile driver’s license (mDL) use…

 

Brazil regulator demands details on stadium biometrics

Brazil’s National Data Protection Authority (ANPD) is asking for data protection impact assessment reports from 23 clubs that have deployed…

 

Clearview seeks refund for failed bulk purchase of SSNs, facial photos

Clearview AI is in the midst of a court battle to recover money it paid to a data broker for…

 

Vietnam PM urges all airports to use biometric authentication

The Prime Minister of Vietnam Pham Minh Chinh has requested all airports and border gates to use biometric authentication for…

Comments

Leave a Reply

This site uses Akismet to reduce spam. Learn how your comment data is processed.

Most Viewed This Week

Featured Company

Biometrics Insight, Opinion

Digital ID In-Depth

Biometrics White Papers

Biometrics Events