New Medusa Banking Attack Targets Android Users in Multiple Countries

26 Jun 2024

BRITS and Americans have been warned of a vicious banking attack targeting Android users. Dubbed “Medusa”, the campaign allows cyber thieves to raid accounts using sneaky tactics without the phone’s owner realizing.

Medusa has been around for some time but experts have detected a new variant of it. First uncovered in July 2020, the malware – also known as TangleBot – is capable of reading sensitive text messages, keeping tabs on the buttons you press, taking screenshots, and recording phone calls to ultimately get hold of your bank account details. This latest version goes a step further, with the ability to display a full-screen overlay, according to cybersecurity firm Cleary. Doing so shows a black screen fooling victims into thinking their device is powered off when actually hackers could be getting to work.

Read more about Android

“While the exact purpose remains under investigation, this functionality presents a potential threat: by obscuring the underlying screen content, the attacker can use this overlay to mask other malicious activities,” Cleary explained. The attack has not only been targeting Android users in the UK and US, but also Canada, France, Italy, Spain, and Turkey. Hackers have come up with the sneaky idea of requesting fewer but more essential permissions. “The latest Medusa variant demonstrates a strategic shift towards a lightweight approach,” Cleary continued.

Minimizing the required permissions evades detection and appears more benign, enhancing its ability to operate undetected for extended periods. Medusa usually relies on phishing tricks to spread malware. But it’s increasingly been detected in so-called dropper apps, which are downloaded from untrusted sources outside of the Google Play Store. These can sometimes appear in “smishing” attacks, which are fake SMS messages designed to trick you into installing something on your phone. Among the dubious apps found to be distributing Medusa this time round are fake Google Chrome and 5G connectivity apps, as well as a sketchy streaming app called 4K Sports.

How to spot a dodgy app

  1. Check the reviews: Be wary of both complaints and uniformly positive reviews by fake accounts.
  2. Look out for grammar mistakes: Legitimate app developers won’t have typos or errors in their app descriptions.
  3. Check the number of downloads: Avoid apps with only several thousand downloads, as it could be fake.
  4. Research the developer: Do they have a good reputation? Or, are they totally fake?
  5. Check the release date: A recent release date paired with a high number of downloads is usually bad news.
  6. Review the permission agreement: This agreement gives permission for the app to take bits of your data, and fake apps often ask for additional data that is not necessary.
  7. Check the update frequency: An app that is updated too frequently is usually indicative of security vulnerabilities.
  8. Check the icon: Look closely, and don’t be deceived by distorted, lower-quality versions of icons from legitimate apps.

Users are once again warned of downloading apps outside official app stores. All of this information will be available to help Android users stay vigilant against the Medusa banking attack and other malware threats.

Top charts for Mobile Android

uTorrent

uTorrent

Latest update uTorrent download for free for Windows PC or Android mobile

5
1032 reviews
6379270
downloads
Zona

Zona

Latest update Zona download for free for Windows PC or Android mobile

4
614 reviews
1267425
downloads
WinRAR

WinRAR

Latest update WinRAR download for free for Windows PC or Android mobile

5
735 reviews
495174
downloads
Minecraft

Minecraft

Latest update Minecraft download for free for Windows PC or Android mobile

5
750 reviews
453459
downloads

News and reviews for Mobile Android

Game 'Green Light' Coming to PC, iOS, and Android by 2026

Dream Adventure Game 'Green Light' announced for PC, iOS, Android, 2026. Experience yanaginagi's world. Launch expected with English, Japanese support.

Read more

Free Apps Now Available for Android and iOS Users

Enjoy free premium apps on Android and iOS. Limited-time offer. Download now for lasting access.

Read more

AppHub Uninstalled from T-Mobile Devices for Improved Privacy

T-Mobile removes AppHub from Android devices amid privacy concerns over silent app installations.

Read more

LibriVox Makes Audiobooks Free for Android Auto Users

LibriVox offers over 18,000 free audiobooks for Android Auto users, enhancing long drives with public-domain classics and seamless in-car integration.

Read more

Unveil Huge Android App Discounts This Week

Discover significant app discounts on Android, including game and utility deals, available this week.

Read more

Latest Android Deals Include Trudograd Price Drop

Android deals now offer discounts on apps like Trudograd and Boxville 2, enhancing affordability for tech enthusiasts.

Read more

Top Free Apps to Enhance Your New Android Experience

Explore five free apps for Android that boost privacy, browsing, and productivity, offering solid performance with no cost.

Read more

Google Adds AI Summaries to Play Store Reviews

Google introduces AI-generated review summaries on Play Store, aiding app selection by highlighting key pros and cons under user reviews.

Read more

FBI Urges Changes to Encryption in Messaging Apps

FBI pushes for decryption in U.S. messaging apps to tackle crime. Impact on privacy debated.

Read more

SlopAds Ad-Fraud Uncovered in 224 Android Apps

SlopAds ad-fraud scheme impacts 224 Android apps on Google Play, affecting over 38 million downloads. Google removes apps; users should deploy Play Protect.

Read more