New banking threat disguised as Firefox add-on
A dangerous piece of malware can disguise itself as a legitimate Firefox app.
Sign up today and you will receive a free copy of our Future Focus 2025 report - the leading guidance on AI, cybersecurity and other IT challenges as per 700+ senior executives
You are now subscribed
Your newsletter sign-up was successful
A new type of password-stealing Trojan which is disguised as a Firefox add-on has been discovered by security company BitDefender.
Trojan.PWS.ChromeInject.A downloads to the Mozilla Firefox folder when the browser is opened and filters data sent by the user to over 100 different online banking websites.
These include bankofamerica.com, chase.com, Halifax-online.co.uk, Wachovia.com, paypal.com and e-gold.com.
Once the user is infected, their login credentials are sent to a particular web address, with BitDefender stating that the domain and hosting server were located in Russia.
It has been reported that the malware disguises itself as Greasemonkey, a program which customises the way a webpage displays using JavaScript.
"Users should be aware of the risks they are facing if such confidential information is stolen," said Viorel Canja, head of BitDefender anti-virus lab.
Sign up today and you will receive a free copy of our Future Focus 2025 report - the leading guidance on AI, cybersecurity and other IT challenges as per 700+ senior executives
-
ITPro Excellence Awards winners unveiledIt's time to celebrate excellence in IT. Read on for the full list of winners...
-
This new mobile compromise toolkit enables spyware, surveillance, and data theftNews The professional package allows even unsophisticated attackers to take full control of devices
-
Mozilla patches high-severity security flaws in new ‘speedy’ Firefox releaseNews Numerous vulnerabilities across Mozilla's products could potentially lead to code execution and system takeover
-
CronRat Magecart malware uses 31st February date to remain undetectedNews The malware allows for server-side payment skimming that bypasses browser security
-
Mekotio trojan continues to spread despite its operators’ arrestsNews Hackers have used it in 100 more attacks since arrests
-
“Trojan Source” hides flaws in source code from humansNews Organizations urged to take action to combat the new threat that could result in SolarWinds-style attacks
-
What is Emotet?In-depth A deep dive into one of the most infamous and prolific strains of malware
-
Fake AnyDesk Google ads deliver malwareNews Malware pushed through Google search results
-
Hackers use open source Microsoft dev platform to deliver trojansNews Microsoft's Build Engine is being used to deploy Remcos password-stealing malware
-
Mozilla and Brave release one-click method for online privacy requestsNews Mozilla, Brave and other online privacy leaders have released a streamlined way to protect your privacy