• About us
  • Contact us
  • Our team
  • Terms of Service
Wednesday, December 24, 2025
Kashmir Images - Latest News Update
Epaper
  • TOP NEWS
  • CITY & TOWNS
  • LOCAL
  • BUSINESS
  • NATION
  • WORLD
  • SPORTS
  • OPINION
    • EDITORIAL
    • ON HERITAGE
    • CREATIVE BEATS
    • INTERALIA
    • WIDE ANGLE
    • OTHER VIEW
    • ART SPACE
  • Photo Gallery
  • CARTOON
  • EPAPER
No Result
View All Result
Kashmir Images - Latest News Update
No Result
View All Result
Home BUSINESS

New mobile banking virus prowling in Indian cyberspace

Press Trust of india by Press Trust of india
September 15, 2022
in BUSINESS
A A
0
New mobile banking virus prowling in Indian cyberspace
FacebookTwitterWhatsapp

New Delhi:  A new mobile banking ‘Trojan’ virus — SOVA — which can stealthily encrypt an Android phone for ransom and is hard to uninstall is targeting Indian customers, the country’s federal cyber security agency said in its latest advisory.

The virus has upgraded to its fifth version after it was first detected in the Indian cyberspace in July, it said.

More News

RBI announces Rs 2 lakh crore OMO, $10 bn USD/INR swap to inject liquidity

VB-G RAM G Act better than MGNREGA, will transform rural India: Shivraj Chouhan

CEA says mindset that India’s data estimates being inferior needs to change

Load More

“It has been reported to CERT-In that Indian banking customers are being targeted by a new type of mobile banking malware campaign using SOVA Android Trojan.The first version of this malware appeared for sale in underground markets in September 2021 with the ability to harvest user names and passwords via key logging, stealing cookies and adding false overlays to a range of apps,” the advisory said.

SOVA, it said, was earlier focusing on countries like the US, Russia and Spain, but in July 2022 it added several other countries, including India, to its list of targets.

The latest version of this malware, according to the advisory, hides itself within fake Android applications that show up with the logo of a few famous legitimate apps like Chrome, Amazon, NFT (non-fungible token linked to crypto currency) platform to deceive users into installing them.

“This malware captures the credentials when users log into their net banking apps and access bank accounts. The new version of SOVA seems to be targeting more than 200 mobile applications, including banking apps and crypto exchanges/wallets,” the advisory said.

The Indian Computer Emergency Response Team or CERT-In is the federal technology arm to combat cyber attacks and guards the Internet space against phishing and hacking assaults and similar online attacks.

The agency said the malware is distributed via smishing (phishing via SMS) attacks, like most Android banking Trojans.

“Once the fake android application is installed on the phone, it sends the list of all applications installed on the device to the C2 (command and control server) controlled by the threat actor in order to obtain the list of targeted applications.”

“At this point, the C2 sends back to the malware the list of addresses for each targeted application and stores this information inside an XML file. These targeted applications are then managed through the communications between the malware and the C2,” it said.

The lethality of the virus can be gauged from the fact that it can collect keystrokes, steal cookies, intercept multi-factor authentication (MFA) tokens, take screenshots and record video from a webcam and can perform gestures like screen click, swipe etc. using android accessibility service.

It can also add false overlays to a range of apps and “mimic” over 200 banking and payment applications in order to con the Android user.

“It has been discovered that the makers of SOVA recently upgraded it to its fifth version since its inception, and this version has the capability to encrypt all data on an Android phone and hold it to ransom,” it said.

Another key feature of the virus, according to the advisory, is the refactoring of its “protections” module, which aims to protect itself from different victim actions.

For example, it said, if the user tries to uninstall the malware from the settings or pressing the icon, SOVA is able to intercept these actions and prevent them by returning to the home screen and showing a toast (small popup) displaying “This app is secured”.

These attack campaigns can effectively jeopardise the privacy and security of sensitive customer data and result in “large-scale” attacks and financial frauds, it said.

The agency also suggested some counter-measures and best practices that can be put into action by the users to keep safe from the virus.

Users should reduce the risk of downloading potentially harmful apps by limiting their download sources to official app stores, such as your device’s manufacturer or operating system app store, they should always review the app details, number of downloads, user reviews, comments and “ADDITIONAL INFORMATION” section, it said.

One should also verify app permissions and grant only those which have relevant context for the app’s purpose.

They should install regular Android updates and patches and not browse un-trusted websites or follow un-trusted links and exercise caution while clicking on the link provided in any unsolicited emails and SMSs.

Previous Post

Puri hopeful of reviving West Coast Refinery project

Next Post

Peace pact signed with 8 tribal militant groups of Assam

Press Trust of india

Press Trust of india

Related Posts

RBI announces Rs 2 lakh crore OMO, $10 bn USD/INR swap to inject liquidity

RBI holds meeting of Steering Sub Committee of J&K SLBC
by Press Trust of india
December 23, 2025

Mumbai:  The Reserve Bank of India on Tuesday said it will purchase government securities worth Rs 2 lakh crore and...

Read moreDetails

VB-G RAM G Act better than MGNREGA, will transform rural India: Shivraj Chouhan

Centre to set up Clean Plant facility to provide disease-resistant plants to horticulturists in Kashmir
by Press Trust of india
December 23, 2025

Jaipur:  Union Agriculture and Farmers Welfare Minister Shivraj Singh Chouhan on Tuesday said that the Viksit Bharat-G Ram G Act...

Read moreDetails

CEA says mindset that India’s data estimates being inferior needs to change

by Press Trust of india
December 23, 2025

New Delhi:  All estimate methodologies have some limitations, but the mindset that India's methods for estimating GDP are inferior needs...

Read moreDetails

India, New Zealand conclude FTA talks; pact to offer duty-free access, USD 20 bn FDI

India, New Zealand conclude FTA talks; pact to offer duty-free access, USD 20 bn FDI
by Press Trust of india
December 22, 2025

New Delhi:  India and New Zealand on Monday announced the conclusion of talks for a free trade agreement that will...

Read moreDetails

Vaishnaw should resign over Railways deterioration: Congress after train fare hikes

Govt bringing laws, taking steps to make social media platforms accountable: IT Min
by Press Trust of india
December 22, 2025

New Delhi:  The Congress on Monday demanded the resignation of Railway Minister Ashwini Vaishnaw, claiming that under him, the condition...

Read moreDetails

Gold jumps to record high of Rs 1.38 lakh/10g, silver hits new peak of Rs 2,14,500 per kg

by Press Trust of india
December 22, 2025

New Delhi:  Gold prices rose to a fresh lifetime high of Rs 1,38,200 per 10 grams, gaining Rs 1,685, in...

Read moreDetails
Next Post
Peace pact signed with 8 tribal militant groups of Assam

Peace pact signed with 8 tribal militant groups of Assam

  • About us
  • Contact us
  • Our team
  • Terms of Service
E-Mailus: kashmirimages123@gmail.com

© 2025 Kashmir Images - Designed by GITS.

No Result
View All Result
  • TOP NEWS
  • CITY & TOWNS
  • LOCAL
  • BUSINESS
  • NATION
  • WORLD
  • SPORTS
  • OPINION
    • EDITORIAL
    • ON HERITAGE
    • CREATIVE BEATS
    • INTERALIA
    • WIDE ANGLE
    • OTHER VIEW
    • ART SPACE
  • Photo Gallery
  • CARTOON
  • EPAPER

© 2025 Kashmir Images - Designed by GITS.