Close Menu
InfovistarInfovistar
  • AI & ML
  • Cybersecurity
  • Startup
  • Tech News
  • Insights
    • Web Development
    • AWS and Cloud
    • Blockchain and Cryptocurrency
    • Chatbots
    • Technology
    • DevOps
    • Resources
  • Courses
    • Machine Learning
      • Python Tutorial
      • TensorFlow Tutorial
      • OpenCV
    • DSA
      • Data Structures
    • Web Development
      • PHP Tutorial
      • CodeIgniter Tutorial
      • CodeIgniter 4 Tutorial
      • CodeIgniter 4 AJAX
      • JavaScript
    • Mobile Development
      • Android Tutorial
  • Tools
    • Beautifier
      • HTML Beautifier
      • JavaScript Beautifier
      • CSS Beautifier
    • Online Compilers
      • Python Compiler
      • Java Compiler
      • JavaScript Editor
      • PHP Compiler
      • C++ Compiler
      • C Compiler
    • Image Optimization
      • Image Compressor
      • JPEG to PNG
      • PNG to JPEG
      • WebP to PNG

Subscribe to Updates

Get the latest creative news from FooBar about art, design and business.

What's Hot

Ransomware 2.0: How AI Is Changing Cyber Attacks Forever

April 18, 2025

Lovable AI Faces Major Threat from VibeScamming Attacks

April 10, 2025

Top Trends to Include in Your Strategy for Digital Marketing in 2025

April 5, 2025
Facebook X (Twitter) Instagram
Facebook X (Twitter) Instagram Pinterest Vimeo
InfovistarInfovistar
  • AI & ML
  • Cybersecurity
  • Startup
  • Tech News
  • Insights
    • Web Development
    • AWS and Cloud
    • Blockchain and Cryptocurrency
    • Chatbots
    • Technology
    • DevOps
    • Resources
  • Courses
    • Machine Learning
      • Python Tutorial
      • TensorFlow Tutorial
      • OpenCV
    • DSA
      • Data Structures
    • Web Development
      • PHP Tutorial
      • CodeIgniter Tutorial
      • CodeIgniter 4 Tutorial
      • CodeIgniter 4 AJAX
      • JavaScript
    • Mobile Development
      • Android Tutorial
  • Tools
    • Beautifier
      • HTML Beautifier
      • JavaScript Beautifier
      • CSS Beautifier
    • Online Compilers
      • Python Compiler
      • Java Compiler
      • JavaScript Editor
      • PHP Compiler
      • C++ Compiler
      • C Compiler
    • Image Optimization
      • Image Compressor
      • JPEG to PNG
      • PNG to JPEG
      • WebP to PNG
Subscribe
InfovistarInfovistar
Home » Chameleon Android Banking Trojan Targets Users Through Fake CRM App
Cybersecurity

Chameleon Android Banking Trojan Targets Users Through Fake CRM App

InfovistarBy InfovistarAugust 7, 2024No Comments3 Mins Read
Share Facebook Twitter Pinterest LinkedIn Tumblr Reddit Telegram Email
Chameleon Android Banking Trojan Targets Users Through Fake CRM App
Share
Facebook Twitter LinkedIn Pinterest Email

Cybersecurity researchers have uncovered a new cunning technique cybercriminals use behind the Chameleon Android banking trojan. These threat actors target users in Canada by disguising their malware as a Customer Relationship Management (CRM) app. The Dutch security firm ThreatFabric revealed this in a technical report published on Monday.

Expanding Targets: From Canada to Europe

In July 2024, researchers identified a campaign targeting customers in both Canada and Europe. This marks a significant expansion from Chameleon’s previous targets in Australia, Italy, Poland, and the U.K. By using CRM-related themes, the attackers focus on customers in the hospitality sector and Business-to-Consumer (B2C) employees.

Clever Bypass of Android’s Security Measures

The dropper artifacts in this campaign are designed to bypass the Restricted Settings imposed by Google in Android 13 and later versions. These settings usually prevent sideloaded apps from requesting dangerous permissions, such as accessibility services. Chameleon cleverly sidesteps these restrictions, a technique seen before with malware like SecuriDroper and Brokewell.

Also read | Cybercriminals Deploy 100K+ Malware Android Apps to Steal OTP Codes

How the Chameleon Android Trojan Tricks Users

Once installed, the fake CRM app displays a bogus login page. After users attempt to log in, the app shows an error message, urging them to reinstall it. In reality, this action deploys the Chameleon payload. The app then reloads the phony CRM webpage, asking users to log in again, only to show another error message: “Your account is not activated yet. Contact the HR department.”

The Dangerous Capabilities of Chameleon

Chameleon has a frightening array of capabilities. It can conduct on-device fraud (ODF) and transfer funds from users’ accounts. Additionally, it uses overlays and extensive permissions to harvest credentials, contact lists, SMS messages, and geolocation information. If the malware infects a device with access to corporate banking, it poses a significant risk to the organization.

Why the CRM Disguise Works

ThreatFabric explains that the choice to disguise the malware as a CRM app targets employees whose roles involve CRM systems. These employees are more likely to have access to business banking accounts, making the threat even more severe.

A Broader Context of Cyber Threats

This discovery comes just weeks after IBM X-Force detailed a separate banking malware campaign in Latin America. The CyberCartel group used malicious Google Chrome extensions to steal credentials and financial data, delivering a trojan named Caiman. They aimed to install a harmful browser plugin and use the Man-in-the-Browser technique to collect sensitive banking information.

Cybersecurity
Share. Facebook Twitter Pinterest LinkedIn Tumblr Email
Previous ArticleCybercriminals Deploy 100K+ Malware Android Apps to Steal OTP Codes
Next Article Gcore Report Reveals 46% Surge in DDoS Attacks in First Half of 2024
Infovistar
  • Website
  • Facebook
  • X (Twitter)
  • Instagram
  • LinkedIn

Related Posts

Cybersecurity

Ransomware 2.0: How AI Is Changing Cyber Attacks Forever

April 18, 2025
Cybersecurity

Lovable AI Faces Major Threat from VibeScamming Attacks

April 10, 2025
Cybersecurity

Hackers Target Mac Users with Apple ID Phishing Scam

March 28, 2025
Add A Comment

Comments are closed.

Blog Categories
  • AI and ML (93)
  • Android (4)
  • AWS and Cloud (7)
  • Blockchain and Cryptocurrency (6)
  • Case Study (7)
  • Chatbots (5)
  • Cybersecurity (71)
  • DevOps (5)
  • Object-Oriented Programming (2)
  • Payment Gateway (4)
  • Resources (5)
  • Search Engine Optimization (3)
  • Startup (34)
  • Tech News (70)
  • Tech Tips (12)
  • Technology (79)
  • Trading (6)
  • Web Development (23)
Top Posts

Google is rolling out Identity Check Feature to Android 15

January 25, 20252,370 Views

How to Integrate Google Gemini to WhatsApp

February 16, 20241,658 Views

OpenAI Unveils Web-Based AI Agent Operator for Task Automation

January 24, 20251,502 Views
Stay In Touch
  • Facebook
  • YouTube
  • WhatsApp
  • Twitter
  • Instagram
  • Pinterest
  • LinkedIn
Latest Articles

Subscribe to Updates

Get the latest tech news from FooBar about tech, design and biz.

Most Popular

Google is rolling out Identity Check Feature to Android 15

January 25, 20252,370 Views

How to Integrate Google Gemini to WhatsApp

February 16, 20241,658 Views

OpenAI Unveils Web-Based AI Agent Operator for Task Automation

January 24, 20251,502 Views
Our Picks

Ransomware 2.0: How AI Is Changing Cyber Attacks Forever

April 18, 2025

Lovable AI Faces Major Threat from VibeScamming Attacks

April 10, 2025

Top Trends to Include in Your Strategy for Digital Marketing in 2025

April 5, 2025

Subscribe to Updates

Get the latest creative news from FooBar about art, design and business.

Facebook X (Twitter) Instagram Pinterest
  • About Us
  • Contact Us
  • Tools
  • Terms & Conditions
  • Privacy Policy
  • AdSense Disclaimer
© 2025 Infovistar. Designed and Developed by Infovistar.

Type above and press Enter to search. Press Esc to cancel.

Go to mobile version