FB pixel

Malware variant won’t compromise mobile biometrics, but it will neuter the code

Malware variant won’t compromise mobile biometrics, but it will neuter the code
 

Biometrics security on mobile devices is great unless it’s not turned on. Or if it gets turned off.

Researchers with a Dutch computer services firm have identified a variant of a known banking trojan that forces a device to switch from biometric authentication to PIN authentication. ThreatFabric says the malware can then unlock the device.

ThreatFabric says in a new report that the Android-specific Chameleon banking-focused trojan became a security problem in January. Chameleon is doing the most damage right now in Australia (where it specifically focuses on the nation’s tax office) and Poland.

It has been distributed on phishing pages doctored to look like legitimate apps. The new variant is distributed on the Zombinder platform on which criminals bind malware to Android apps.

The ability to sideline biometric security is new in the update. ThreatFabric’s report details how the hack works.

Biometric identifiers are untouched in this variant.

Nonetheless, the new Chameleon variant is not good news for the mobile biometric security market and raises the question, can biometric systems be created with their own defenses against being leapfrogged?

Article Topics

 |   |   |   |   | 

Latest Biometrics News

 

AI voice deepfake of U.S. Secretary of State triggers global security alert

In one of the most audacious examples yet of AI-enabled political deception, an individual posing as U.S. Secretary of State…

 

Advent reportedly prepping Idemia Public Security sale for up to €3 billion

Hollywood summer blockbusters are increasingly sequels, so perhaps it should be little surprise that the next biggest investment in U.S….

 

Pimloc raises $5M to fuel global expansion of video privacy redaction tool

Pimloc has raised $5 million in a strategic investment round led by Amadeus Capital Partners and Edge Ventures. The company…

 

UK Companies House identity verification requirement nears

Money laundering won’t go away. In fact, the problem is growing. Strict anti money laundering (AML) regulations can help, but…

 

Sumsub integrates with Verax, launches APAC roadshow

Sumsub has unveiled its integration with Verax — the attestation service built on Linea, Consensys’ Ethereum Layer 2 network —…

 

Cameroon unveils plan to modernize local digital govt services

The government of Cameroon has disclosed that it is working to update a Digital Master Plan for decentralized entities in…

Comments

Leave a Reply

This site uses Akismet to reduce spam. Learn how your comment data is processed.

Biometric Market Analysis

Most Viewed This Week

Featured Company

Biometrics Insight, Opinion

Digital ID In-Depth

Biometrics White Papers

Biometrics Events