Search

CERT-In Says Mobile Banking Android Malware 'EventBot' Horsing Around in Cyberspace

A Trojan is a virus or malware that cheats a victim to stealthily attack its computer or phone-operating system.

Advertisement
Highlights
  • CERT-In is the national technology arm to combat cyber attacks
  • The cyber security agency has suggested certain counter-measures
  • It also asked users to avoid using unsecured, unknown Wi-Fi networks
CERT-In Says Mobile Banking Android Malware 'EventBot' Horsing Around in Cyberspace

The cyber security agency has suggested certain counter-measures to check the virus in Android phones

A mobile banking malware called "EventBot", which steals personal financial information, may affect Android phone users in India, the federal cyber-security agency has said in a latest advisory.

The CERT-In has issued a caution, saying the Trojan virus may "masquerade as a legitimate application such as Microsoft Word, Adobe Flash, and others using third-party application downloading sites to infiltrate into victim device".

A Trojan is a virus or malware that cheats a victim to stealthily attack its computer or phone-operating system.

"It has been observed that a new Android mobile malware named EventBot is spreading.

"It is a mobile-banking Trojan and info-stealer that abuses Android''s in-built accessibility features to steal user data from financial applications, read user SMS messages and intercept SMS messages, allowing malware to bypass two-factor authentication," the CERT-In advisory said.

The Computer Emergency Response Team of India (CERT-In) is the national technology arm to combat cyber attacks and guard the Indian cyber space.

"EventBot", it said, targets over 200 different financial applications, including banking applications, money-transfer services, and cryptocurrency wallets, or financial applications based in the US and Europe region at the moment but some of their services may affect Indian users as well.

The virus "largely targets financial applications like Paypal Business, Revolut, Barclays, UniCredit, CapitalOne UK, HSBC UK, TransferWise, Coinbase, paysafecard etc.," the CERT-In said.

The agency said while "EventBot" has not been "seen" on Google Play Store till now, it can "masquerade" as a genuine mobile phone application.

"Once installed on victim''s Android device, it asks permissions such as controlling system alerts, reading external storage content, installing additional packages, accessing Internet, whitelisting it to ignore battery optimisation, prevent processor from sleeping or dimming the screen, auto-initiate upon reboot, receive and read SMS messages, and continue running and accessing data in the background," the advisory explained.

The virus further prompts the users to give access to their device accessibility services.
"Also, it can retrieve notifications about other installed applications and read contents of other applications.

"Over the time, it can also read Lock Screen and in-app PIN that can give attacker more privileged access over victim device," the advisory said.

The cyber-security agency has suggested certain counter-measures to check the virus infection into Android phones:

"Do not download and install applications from untrusted sources like unknown websites and links on unscrupulous messages; install updated anti-virus solution; prior to downloading or installing apps (even from Google Play Store), always review the app details, number of downloads, user reviews, comments, and the ''additional information'' section.

Exercise caution while visiting trusted/un-trusted sites for clicking links; install Android updates and patches as and when available; users are advised to use device encryption or encrypting external SD card feature available with most of the Android operating system."

It also asked users to avoid using unsecured, unknown Wi-Fi networks and for prior confirming of a banking/financial app from the source organisation.

"Make sure you have a strong artificial intelligence (AI) powered mobile antivirus installed to detect and block this kind of tricky malware if it ever makes its way onto your system," the advisory states.


Which is the bestselling Vivo smartphone in India? Why has Vivo not been making premium phones? We interviewed Vivo's director of brand strategy Nipun Marya to find out, and to talk about the company's strategy in India going forward. We discussed this on Orbital, our weekly technology podcast, which you can subscribe to via Apple Podcasts or RSS, download the episode, or just hit the play button below.

For the latest tech news and reviews, follow Gadgets 360 on X, Facebook, WhatsApp, Threads and Google News. For the latest videos on gadgets and tech, subscribe to our YouTube channel. If you want to know everything about top influencers, follow our in-house Who'sThat360 on Instagram and YouTube.

 
Show Full Article
Please wait...
Advertisement

Related Stories

Popular Mobile Brands
  1. IPL 2025 Live Streaming for Free: How to Watch RR vs KKR IPL Match Online?
  2. Vivo T4 5G Set to Launch in India Soon; to Be Available on Flipkart
  3. Vivo X200 Ultra Confirmed to Launch in April; Could Arrive With Vivo X200s
  4. Nothing Adds Camera Capture Feature to Phone 3a's Essential Space
  5. Tecno Camon 40 Series to Get 3 Years of OS, 5 Years of Security Updates
  6. Vivo Y300t With 6,500mAh Battery Confirmed to Launch on This Date
  7. Sony WF-C710N TWS Earphones With Up to 30 Hours Total Battery Life Launched
  8. Motorola Razr 60 Ultra, Edge 60 and Edge 60 Pro Price Leaked Online
  9. Samsung Galaxy Z Flip 7, Galaxy Z Fold 7 Leaked Accessories Hint at Design
  10. Samsung Galaxy S25 Edge's Alleged Dummy Units Leaked in Hands-on Video
  1. Realme GT 7 Launch Timeline, Key Features Surface Online; Realme GT 8 Pro Specifications Tipped
  2. iPhone 17 Air Thinness Compared With iPhone 17 Pro in Leaked Image
  3. CME Group Using Google Cloud’s Blockchain for Next-Gen Derivatives Exchange Upgrades
  4. Samsung Galaxy S25 Edge Dummy Unit Leaked; Suggests Slim Build, Off-Centered USB Type-C Port
  5. Bharti Airtel, Unit Pay Rs. 5,985 Crore to Clear 'High-Cost' 2024 Spectrum Dues
  6. Maharashtra Scraps Six Percent EV Tax Plan to Boost Adoption
  7. Alibaba Qwen 2.5 Vision Language Model Released in a Smaller Size, Packs Agentic Capabilities
  8. Oppo Find X8s Display Size, Design Features Teased Ahead of April 10 Launch
  9. Motorola Razr 60 Ultra, Edge 60 and Edge 60 Pro European Prices, RAM and Storage Variants Leaked
  10. Apple Reportedly Faces Challenges While Designing Watch SE With Plastic Body
Gadgets 360 is available in
Download Our Apps
App Store App Store
Available in Hindi
App Store
© Copyright Red Pixels Ventures Limited 2025. All rights reserved.
Trending Products »
Latest Tech News »