Presentation is loading. Please wait.

Presentation is loading. Please wait.

Zitmo 報告者:劉旭哲. What is Zitmo ? – Zeus in the Mobile What is Zeus ? – a Trojan horse that steals banking information by keystroke logging.

Similar presentations


Presentation on theme: "Zitmo 報告者:劉旭哲. What is Zitmo ? – Zeus in the Mobile What is Zeus ? – a Trojan horse that steals banking information by keystroke logging."— Presentation transcript:

1 Zitmo 報告者:劉旭哲

2 What is Zitmo ? – Zeus in the Mobile What is Zeus ? – a Trojan horse that steals banking information by keystroke logging

3 August, a bank lost one million dollars in UK because of Zeus Less than two months, Fortinet found Zitmo

4 How to Phishing Web Victim input mobile number and brand SMS with malicious package – a Symbian package 、 a BlackBerry Jar Create NumberDB.db – tbl_contact : index, name, descr, pb_contact_id. – tbl_phone_number : contact_id, phone_number – tbl_history : event_id, pn_id, date, description, contact_info, contact_id – Could use some SQL query

5 After installing, send a SMS to someone… Therefore, your SMS will be recorded… The malware seems to be able to answer ’set admin’ – anyone may be able to take control of it.

6 So what Bank Authentication – Two Factor Authentication will be broken. Is investigating

7 reference http://www.informationsecurity.com.tw/article/article _detail.aspx?tv=11&aid=5912 http://www.informationsecurity.com.tw/article/article _detail.aspx?tv=11&aid=5912 http://blog.fortinet.com/zeus-in-the-mobile-zitmo- online-bankings-two-factor-authentication-defeated../ http://blog.fortinet.com/zeus-in-the-mobile-zitmo- online-bankings-two-factor-authentication-defeated../ http://news.techworld.com/security/3241644/new- zeus-attack-targets-mobile-banking-authentication/ http://news.techworld.com/security/3241644/new- zeus-attack-targets-mobile-banking-authentication/ http://en.wikipedia.org/wiki/Zeus_%28trojan_horse%2 9 http://en.wikipedia.org/wiki/Zeus_%28trojan_horse%2 9 http://en.wikipedia.org/wiki/Keystroke_logging http://threatcenter.smobilesystems.com/?p=1951


Download ppt "Zitmo 報告者:劉旭哲. What is Zitmo ? – Zeus in the Mobile What is Zeus ? – a Trojan horse that steals banking information by keystroke logging."

Similar presentations


Ads by Google