PUREVPN
X

Account Taken-Over! Nexus on its Peak

Marrium Akhtar

Cleafy, a company specializing in fraud prevention, reports that the Nexus Android banking trojan is now being advertised on underground forums as a botnet, using the malware-as-a-service (MaaS) business model. While the trojan was first announced in June 2022, it had already been active for several months. However, beginning in January 2023, its creators began promoting it as a botnet, with a MaaS subscription cost of $3,000 per month.

Plan of action

  1. Nexus, a Trojan malware, received updates between August 2022 and January 2023. The malware developers added the ability to delete received SMS messages and a feature to enable and disable the 2FA stealer module.
  2. The trojan was also updated with an auto-update mechanism, and encryption capabilities are being worked on, which could potentially be used for hiding malicious activities or preparing for a ransomware module.
  3. The Nexus developers manage the malware and data collection operations from a centralized interface that provides information on infected devices and the botnet’s status.
  4. The centralized panel also allows malware operators to create customized samples and injections targeting the applications of 450 different financial institutions.

MAAS(Malware as a Service): Crook in action

MaaS is often offered through dark web marketplaces, where potential buyers can browse and purchase various types of malware, including ransomware, trojans, and spyware, among others. 

MaaS has made it easier for cybercriminals to carry out attacks, as they can now access advanced tools and techniques without having to develop them themselves. This has led to an increase in the frequency and complexity of cyber attacks, posing a significant threat to individuals and organizations alike.

Ponder recommendations to stay safe from Android malware

Here are some tips to help you stay safe from Android malware:

Summing-up

Understanding the importance of being secure on the internet has become something you must never forego. If you want your data, your privacy, and your identity to be safe, follow preventive measures. After all, it is always brainier to prevent than to cure!

Categories:
Tags:
Leave Comment