* . *
  • About
  • Advertise
  • Privacy & Policy
  • Contact
Sunday, October 26, 2025
Earth-News
  • Home
  • Business
  • Entertainment
    Meet Belynda From ‘Married at First Sight’ Season 19: Age, Job, Instagram and More – Yahoo

    Meet Belynda from ‘Married at First Sight’ Season 19: Age, Career, Instagram & More Revealed!

    General Hospital’s Rena Sofer Exits as Lois — But the Door Isn’t Closed – Yahoo

    General Hospital’s Rena Sofer Exits as Lois — But the Door Isn’t Closed – Yahoo

    CNN Launches New Show – What to Know About Host Elex Michaelson – Central Oregon Daily

    Get to Know Elex Michaelson: The Dynamic New Host Taking CNN by Storm

    Johnny Depp Set To Finally Make His Big Hollywood Comeback After Amber Heard Controversy – Yahoo

    Johnny Depp Set for a Triumphant Hollywood Comeback Following Amber Heard Controversy

    ‘Chainsaw Man — The Movie: Reze Arc’ Review: Hit Manga Gets an Ultra-Violent, Surprisingly Emotional Big-Screen Adaptation – Yahoo

    Chainsaw Man – The Movie: Reze Arc Review: A Brutal and Unexpectedly Emotional Big-Screen Adaptation

    Reba McEntire Details Personal Relationship With Late Stepson Brandon Blackstock – KNDU

    Reba McEntire Shares Emotional Tribute to Her Late Stepson Brandon Blackstock

  • General
  • Health
  • News

    Cracking the Code: Why China’s Economic Challenges Aren’t Shaking Markets, Unlike America’s” – Bloomberg

    Trump’s Narrow Window to Spread the Truth About Harris

    Trump’s Narrow Window to Spread the Truth About Harris

    Israel-Gaza war live updates: Hamas leader Ismail Haniyeh assassinated in Iran, group says

    Israel-Gaza war live updates: Hamas leader Ismail Haniyeh assassinated in Iran, group says

    PAP Boss to Niger Delta Youths, Stay Away from the Protest

    PAP Boss to Niger Delta Youths, Stay Away from the Protest

    Court Restricts Protests In Lagos To Freedom, Peace Park

    Court Restricts Protests In Lagos To Freedom, Peace Park

    Fans React to Jazz Jennings’ Inspiring Weight Loss Journey

    Fans React to Jazz Jennings’ Inspiring Weight Loss Journey

    Trending Tags

    • Trump Inauguration
    • United Stated
    • White House
    • Market Stories
    • Election Results
  • Science
  • Sports
  • Technology
    The Anti-Tech Backlash Is Going to Grow Stronger – Jacobin

    The Anti-Tech Backlash Is Gaining Unstoppable Momentum

    Comments to EU Regarding the Draft Revised Technology Transfer Block Exemption Regulation and Technology Transfer Guidelines – Information Technology and Innovation Foundation

    Have Your Say: Share Your Thoughts on the Draft Revised Technology Transfer Block Exemption Regulation and Guidelines

    Ghost Tapping is exploiting tap-to-pay technology in order to steal your money; what your need to know – ABC7 New York

    Ghost Tapping: How Thieves Are Using Tap-to-Pay Technology to Steal Your Money and What You Need to Know

    New technology for grading and packing dates – FreshPlaza

    Revolutionary Technology Transforms Date Grading and Packing Process

    Project underway to upgrade technology on 911 towers in Kanawha County – WCHS

    Kanawha County Launches Major Upgrade to 911 Tower Technology

    Next steps: Technology opens new options for greater mobility – Missouri Independent

    Next Steps: How Technology is Opening Exciting New Doors to Greater Mobility

    Trending Tags

    • Nintendo Switch
    • CES 2017
    • Playstation 4 Pro
    • Mark Zuckerberg
No Result
View All Result
  • Home
  • Business
  • Entertainment
    Meet Belynda From ‘Married at First Sight’ Season 19: Age, Job, Instagram and More – Yahoo

    Meet Belynda from ‘Married at First Sight’ Season 19: Age, Career, Instagram & More Revealed!

    General Hospital’s Rena Sofer Exits as Lois — But the Door Isn’t Closed – Yahoo

    General Hospital’s Rena Sofer Exits as Lois — But the Door Isn’t Closed – Yahoo

    CNN Launches New Show – What to Know About Host Elex Michaelson – Central Oregon Daily

    Get to Know Elex Michaelson: The Dynamic New Host Taking CNN by Storm

    Johnny Depp Set To Finally Make His Big Hollywood Comeback After Amber Heard Controversy – Yahoo

    Johnny Depp Set for a Triumphant Hollywood Comeback Following Amber Heard Controversy

    ‘Chainsaw Man — The Movie: Reze Arc’ Review: Hit Manga Gets an Ultra-Violent, Surprisingly Emotional Big-Screen Adaptation – Yahoo

    Chainsaw Man – The Movie: Reze Arc Review: A Brutal and Unexpectedly Emotional Big-Screen Adaptation

    Reba McEntire Details Personal Relationship With Late Stepson Brandon Blackstock – KNDU

    Reba McEntire Shares Emotional Tribute to Her Late Stepson Brandon Blackstock

  • General
  • Health
  • News

    Cracking the Code: Why China’s Economic Challenges Aren’t Shaking Markets, Unlike America’s” – Bloomberg

    Trump’s Narrow Window to Spread the Truth About Harris

    Trump’s Narrow Window to Spread the Truth About Harris

    Israel-Gaza war live updates: Hamas leader Ismail Haniyeh assassinated in Iran, group says

    Israel-Gaza war live updates: Hamas leader Ismail Haniyeh assassinated in Iran, group says

    PAP Boss to Niger Delta Youths, Stay Away from the Protest

    PAP Boss to Niger Delta Youths, Stay Away from the Protest

    Court Restricts Protests In Lagos To Freedom, Peace Park

    Court Restricts Protests In Lagos To Freedom, Peace Park

    Fans React to Jazz Jennings’ Inspiring Weight Loss Journey

    Fans React to Jazz Jennings’ Inspiring Weight Loss Journey

    Trending Tags

    • Trump Inauguration
    • United Stated
    • White House
    • Market Stories
    • Election Results
  • Science
  • Sports
  • Technology
    The Anti-Tech Backlash Is Going to Grow Stronger – Jacobin

    The Anti-Tech Backlash Is Gaining Unstoppable Momentum

    Comments to EU Regarding the Draft Revised Technology Transfer Block Exemption Regulation and Technology Transfer Guidelines – Information Technology and Innovation Foundation

    Have Your Say: Share Your Thoughts on the Draft Revised Technology Transfer Block Exemption Regulation and Guidelines

    Ghost Tapping is exploiting tap-to-pay technology in order to steal your money; what your need to know – ABC7 New York

    Ghost Tapping: How Thieves Are Using Tap-to-Pay Technology to Steal Your Money and What You Need to Know

    New technology for grading and packing dates – FreshPlaza

    Revolutionary Technology Transforms Date Grading and Packing Process

    Project underway to upgrade technology on 911 towers in Kanawha County – WCHS

    Kanawha County Launches Major Upgrade to 911 Tower Technology

    Next steps: Technology opens new options for greater mobility – Missouri Independent

    Next Steps: How Technology is Opening Exciting New Doors to Greater Mobility

    Trending Tags

    • Nintendo Switch
    • CES 2017
    • Playstation 4 Pro
    • Mark Zuckerberg
No Result
View All Result
Earth-News
No Result
View All Result
Home Technology

Something nasty injected login-stealing JavaScript into 50K online banking sessions

December 31, 2023
in Technology
Something nasty injected login-stealing JavaScript into 50K online banking sessions
Share on FacebookShare on Twitter

IBM Security has dissected some JavaScript code that was injected into people’s online banking pages to steal their login credentials, saying 50,000 user sessions with more than 40 banks worldwide were compromised by the malicious software in 2023.

Judging by the evidence to hand, it appears the Windows malware DanaBot, or something related or connected to it, infects victims’ PCs – typically from spam emails and other means – and then waits for the user to visit their bank website. At that point, the malware kicks in and injects JavaScript into the login page. This injected code executes on the page in the browser, and intercepts the victim’s credentials as they are entered, which can be passed to fraudsters to exploit to drain accounts.

The code has been spotted attacking customers of dozens of financial orgs in North America, South America, Europe, and Japan, IBM’s Tal Langus reported this week.

The miscreants behind this caper bought the domain names used by the JavaScript code in December 2022, and started their web injection campaign shortly after. We’re told the credential stealing continues to this day. The JS targets a webpage structure that multiple banks use for their sites, and it sounds as though it can harvest multi-factor authentication tokens, too, from marks.

When the requested banking page “contains a certain keyword and a login button with a specific ID present, new malicious content is injected,” Langus explained. “Credential theft is executed by adding event listeners to this button, with an option to steal a one-time password (OTP) token with it.”

The script is fairly smart: it communicates with a remote command-and-control (C2) server, and removes itself from the DOM tree – deletes itself from the login page, basically – once it’s done its thing, which makes it tricky to detect and analyze.

The malware can perform a series of nefarious actions, and these are based on an “mlink” flag the C2 sends. In total, there are nine different actions that the malware can perform depending on the “mlink” value, we’re told. 

These include injecting a prompt for the user’s phone number or two-factor authentication token, which the miscreants can use with the intercepted username and password to access the victim’s bank account and steal their cash.

Hundreds of thousands of dollars in crypto stolen after Ledger code poisoned

Money-grubbing crooks abuse OAuth – and baffling absence of MFA – to do financial crimes

Philippines, South Korea, Interpol cuff 3,500 suspected cyber scammers, seize $300M

Millions of Xfinity customers’ info, hashed passwords feared stolen in cyberattack

The script can also inject an error message on the login page that says the banking services are unavailable for 12 hours. “This tactic aims to discourage the victim from attempting to access their account, providing the threat actor with an opportunity to perform uninterrupted actions,” Langus said.

Other actions include injecting a page loading overlay as well as scrubbing any injected content from the page. 

“This sophisticated threat showcases advanced capabilities, particularly in executing man-in-the-browser attacks with its dynamic communication, web injection methods and the ability to adapt based on server instructions and current page state,” Langus warned. “The malware represents a significant danger to the security of financial institutions and their customers.”

He also urged banking customers to “practice vigilance” with their banking apps. This includes using (and not re-using) strong passwords, not downloading software from unknown sources, and reporting any odd behavior to the banks. See the above-linked write-up for more technical info and some indicators of compromise, if you want to look out for this particular software nasty. ®

PS: AT&T Alien Labs this week drilled into information-stealing malware dubbed JaskaGO, which is written in Go and said to pose “a severe threat to both Windows and macOS operating systems.” The code uses multiple techniques to persist on an infected computer, and can siphon data including login credentials stored by browsers and attack cryptocurrency wallets. The telco also shared indicators of compromise if you want to seek and destroy that malware.

>>> Read full article>>>
Copyright for syndicated content belongs to the linked Source : The Register – https://go.theregister.com/feed/www.theregister.com/2023/12/20/credentialstealing_malware_infects_50k_banking/

Tags: Nastysomethingtechnology
Previous Post

Batman Returns Writer Talks Plans for Scrapped Catwoman Spinoff

Next Post

Here’s who thinks AI chatbots will eventually be smart enough to be your coworker

Rapid radiations underlie most of the known diversity of life – Frontiers

How Rapid Radiations Drive the Incredible Diversity of Life

October 26, 2025

Seismic evidence for a highly heterogeneous martian mantle – Science | AAAS

October 26, 2025
Neanderthals could be brought back within 20 years — but is it a good idea? – Live Science

Could Neanderthals Walk the Earth Again in 20 Years? Unveiling the Exciting Possibilities and Risks of De-Extinction

October 26, 2025
Former L3Harris cyber director charged with selling secrets – theregister.com

Former L3Harris cyber director charged with selling secrets – theregister.com

October 26, 2025
The Anti-Tech Backlash Is Going to Grow Stronger – Jacobin

The Anti-Tech Backlash Is Gaining Unstoppable Momentum

October 26, 2025
‘Not Enough Adjectives’: How Yoshinobu Yamamoto Amazed His Dodgers Teammates – FOX Sports

Not Enough Adjectives’: How Yoshinobu Yamamoto Amazed His Dodgers Teammates

October 26, 2025
World Series 2025: Dodgers’ worst-case scenario plays out as Blake Snell, bullpen crumble in Game 1 vs. Blue Jays: ‘Not a good feeling’ – Yahoo Sports

World Series 2025: Dodgers’ Nightmare Unfolds as Blake Snell and Bullpen Collapse in Game 1 vs. Blue Jays

October 26, 2025
“Bending, not breaking”: The global economy’s new normal – J.P. Morgan

Bending, Not Breaking: Embracing the New Normal of the Global Economy

October 26, 2025
Meet Belynda From ‘Married at First Sight’ Season 19: Age, Job, Instagram and More – Yahoo

Meet Belynda from ‘Married at First Sight’ Season 19: Age, Career, Instagram & More Revealed!

October 26, 2025
80,000 Coloradans projected to drop health insurance amid premium spike – KUSA.com

80,000 Coloradans Expected to Lose Health Insurance as Premiums Soar

October 26, 2025

Categories

Archives

October 2025
M T W T F S S
 12345
6789101112
13141516171819
20212223242526
2728293031  
« Sep    
Earth-News.info

The Earth News is an independent English-language daily published Website from all around the World News

Browse by Category

  • Business (20,132)
  • Ecology (887)
  • Economy (908)
  • Entertainment (21,779)
  • General (17,812)
  • Health (9,949)
  • Lifestyle (921)
  • News (22,149)
  • People (909)
  • Politics (918)
  • Science (16,119)
  • Sports (21,408)
  • Technology (15,888)
  • World (891)

Recent News

Rapid radiations underlie most of the known diversity of life – Frontiers

How Rapid Radiations Drive the Incredible Diversity of Life

October 26, 2025

Seismic evidence for a highly heterogeneous martian mantle – Science | AAAS

October 26, 2025
  • About
  • Advertise
  • Privacy & Policy
  • Contact

© 2023 earth-news.info

No Result
View All Result

© 2023 earth-news.info

No Result
View All Result

© 2023 earth-news.info

Go to mobile version