pwshub.com

Scammers Draining Cash Directly From ATMs, Emptying Bank Accounts Without Debit Cards in Sophisticated Scheme: Cybersecurity Researchers

Cybersecurity researchers say scammers have found a sophisticated way to drain bank accounts directly from ATMs – without needing a debit card in hand.

Experts at the cybersecurity software firm ESET say they’ve discovered a dangerous and unprecedented type of malware they’re calling NGate.

To begin the attack, scammers deploy a phishing technique to embed the malicious software in victims’ mobile devices.

“Victims downloaded and installed the malware after being deceived into thinking they were communicating with their bank and that their device was compromised. In reality, the victims had unknowingly compromised their own Android devices by previously downloading and installing an app from a link in a deceptive SMS message about a potential tax return…

After being installed and opened, NGate displays a fake website that asks for the user’s banking information, which is then sent to the attacker’s server.”

Some of the information the NGate banking malware asks for includes the victim’s date of birth, their banking client ID and the PIN code for their banking card.

Once installed and opened, the NGate malware prompts victims to turn on their mobile device’s near-field communication (NFC) feature.

“Then, victims are instructed to place their payment card at the back of their smartphone until the malicious app recognizes the card.

What’s happening behind the scenes is that the NFC data from the victim’s bank card is being sent through a server to the attacker’s Android device. Essentially, this allows the attacker to mimic the victim’s bank card on their own device. This means the attacker can now use this copied card data on their Android device to make payments and withdraw money from ATMs that use NFC…

This is the first time we have seen Android malware with this capability being used in the wild.

If the attackers fail to carry out ATM transactions, their fallback plan is to transfer funds from the bank accounts of their victims to other accounts.

So far, researchers say the scammers have appeared to target banks in the Czech Republic.

“During our investigation, we identified six different NGate apps specifically targeting clients of three banks in Czechia between November 2023 and March 2024.

In a substantial breakthrough, the Czech police apprehended a 22-year-old, who had been stealing money from ATMs in Prague. Upon arrest, the suspect had 160,000 Czech korunas in his possession, an amount equivalent to over 6,000 euros (approximately US$6,500). The nationality of the arrested individual has not been disclosed. According to the Czech police, the money recovered from the suspect was stolen from just the last three victims, so it is likely that the total amount stolen by the threat actor behind this scheme is considerably higher.”

Generated Image: Midjourney

Source: dailyhodl.com

Related stories
3 days ago - Artificial intelligence is fueling billions of dollars in losses to scams as criminals clone people’s voices to compromise credit cards and bank accounts. The classic scam where victims receive a call from a loved one asking for money is...
1 week ago - Police are warning Wells Fargo customers about a serial card skimming scam targeting people who use the bank’s ATMs. Authorities in the Southern California city of Pasadena say that for the second time in a week, a card skimmer was...
1 month ago - The U.S. Federal Bureau of Investigation (FBI) issued a warning to crypto traders last week about scammers who steal funds by posing as exchange employees. The FBI notes that these fraudsters will contact victims and pretend there are...
1 week ago - On Tuesday, Indian cricket fans were targeted by scammers with a Solana-based token. The attackers attempted to profit from sports fans after hacking Delhi Capitals’ X account. However, the scheme failed to gain much traction despite its...
1 month ago - JPMorgan Chase and Wells Fargo are refusing to reimburse the vast majority of customers who send their money to scammers, according to a new report. New numbers from the US Senate’s Permanent Subcommittee on Investigations show Chase...
Other stories
3 minutes ago - Tether's investment in Sorted Wallet could significantly enhance financial inclusion and economic empowerment in underserved regions. The post Tether invests $1.5 million in Sorted Wallet to boost financial access in emerging markets...
39 minutes ago - After launching a Bitcoin yield ETP, Core wants to bring a similar product to the U.S. "as soon as regulatory frameworks allow it.”
57 minutes ago - Dogecoin could be gearing up for another major surge in price as the meme coin’s chart shows the formation of a major pattern. The Golden Cross pattern is a major bullish formation on a chart that usually precedes a notable rally for...
1 hour ago - Bybit's support for Ethereum's Attackathon underscores the growing emphasis on security and innovation in the crypto industry. The post Bybit backs Ethereum’s first Attackathon with 75 ETH commitment appeared first on Crypto Briefing.
1 hour ago - The arrests and asset freezes highlight the growing effectiveness of international cooperation in combating sophisticated crypto crimes. The post Massive $243 million crypto heist ends with multiple arrests and asset frozen appeared first...