A new Android trojan could bypass your ‘private’ chats to steal your money

A new Android trojan could bypass your ‘private’ chats to steal your money

A new Android banking trojan has surfaced, capable of circumventing encrypted messaging applications such as WhatsApp, Telegram, and Signal to extract users' banking credentials. Security researchers from ThreatFabric have identified this malware, named Sturnus, which, despite being in its testing phase, exhibits alarming capabilities. The researchers have highlighted that Sturnus is already configured to target financial institutions throughout Southern and Central Europe, indicating preparations for a potentially widespread cyber campaign. This malware is reportedly more sophisticated than existing malware families, particularly in its communication protocols and device compatibility. The name 'Sturnus' draws inspiration from the Sturnus vulgaris, commonly known as the European Starling, a bird recognized for its erratic vocalizations. This analogy reflects the malware's unpredictable communication methods, which alternate between simple and complex messages. Sturnus can bypass the end-to-end encryption of messaging services not by hacking the encryption itself, but by exploiting Android's Accessibility Services. By reading messages displayed on the user’s screen post-decryption, it can monitor both incoming and outgoing communications in real time, accessing contact lists and full conversation threads. According to the researchers, Sturnus activates its collection mechanisms whenever a user opens encrypted messaging apps, effectively eavesdropping on their communications. The malware masquerades as legitimate applications, such as 'Google Chrome' or 'Preemix Box,' tricking users into downloading it. Aimed at financial fraud, Sturnus employs two primary tactics: it overlays a fake banking interface on top of legitimate apps, capturing login credentials, and triggers a 'Black Screen' overlay during transactions, deceiving users into thinking their device is inactive while siphoning off funds in the background. Additionally, Sturnus is designed to persistently remain on the infected device, utilizing Administrator privileges to obstruct attempts at uninstallation. It continuously monitors battery levels, sensors, and network status to evade detection by security analysts. If it suspects scrutiny, it may conceal its activities. Users attempting to uninstall the app or adjust its permissions may find that the malware automatically intervenes, clicking 'back' or closing the settings window. Researchers have cautioned that Sturnus possesses extensive situational awareness, supported by a comprehensive monitoring framework meant to ensure its long-term presence on compromised devices.

Sources : Mint

Published On : Nov 26, 2025, 24:35

Streaming
Peacock Unveils Innovative AI Features and Mobile Gaming to Engage Users

Peacock is positioning itself at the forefront of entertainment by integrating artificial intelligence and mobile-centri...

TechCrunch | Mar 13, 2026, 14:25
Peacock Unveils Innovative AI Features and Mobile Gaming to Engage Users
Gaming
FBI Launches Probe into Malware-Infested Games on Steam

The FBI has initiated an investigation into a hacker believed to have released multiple video games embedded with malwar...

TechCrunch | Mar 13, 2026, 15:10
FBI Launches Probe into Malware-Infested Games on Steam
Aerospace
NASA's Artemis II Mission Set to Launch Amid Exciting Developments in Rocket Technology

In the latest edition of the Rocket Report, excitement builds as NASA prepares for the anticipated Artemis II mission, s...

Ars Technica | Mar 13, 2026, 13:00
NASA's Artemis II Mission Set to Launch Amid Exciting Developments in Rocket Technology
AI
Nvidia Poised to Launch Revolutionary AI Chip in Ambitious $20 Billion Investment

Nvidia is gearing up for a major announcement regarding a groundbreaking AI chip, a venture that represents a staggering...

CNBC | Mar 13, 2026, 17:05
Nvidia Poised to Launch Revolutionary AI Chip in Ambitious $20 Billion Investment
Streaming
Spotify Introduces Customizable Taste Profiles for Enhanced Music Recommendations

At the recent SXSW conference, Spotify co-CEO Gustav Söderström unveiled an exciting new feature designed to give listen...

TechCrunch | Mar 13, 2026, 17:35
Spotify Introduces Customizable Taste Profiles for Enhanced Music Recommendations
View All News