Report - New Android malware can steal 2FA codes from Google Authenticator - Android

Get it on Google Play

Report - New Android malware can steal 2FA codes from Google Authenticator - Android

2FA apps are one of the best ways to secure your accounts, but a new form of malware poses a significant threat.

A new form of Android malware can swipe 2FA codes from Google Authenticator.

Two-factor authentication (2FA) is one of the best ways to protect your accounts and services, and Google Authenticator is arguably the most popular app in this regard.

Unfortunately, a new form of Android malware is capable of stealing 2FA codes from Google’s app, according to a report by security firm Threatfabric (via ZDNet). According to the report, a variant of the Cerberus banking trojan emerged with this ability in January 2020.

“Abusing the Accessibility privileges, the Trojan can now also steal 2FA codes from Google Authenticator application. When the app is running, the Trojan can get the content of the interface and can send it to the C2 [command and control – ed] server. Once again, we can deduce that this functionality will be used to bypass authentication services that rely on OTP codes,” reads an excerpt of the report.

Threatfabric notes that the new malware feature isn’t being advertised on underground forums just yet, suggesting that this capability is still in testing. The firm says it still presents a major threat to online banking services though. But this could also be a massive threat to other accounts and services that use 2FA, such as email, Google accounts, and more.

Two-factor authentication apps like Google Authenticator are generally considered to be more secure than SMS-based 2FA. Two factor codes via text message can be intercepted, and there have indeed been numerous cases of SIM swap fraud that allows criminal actors to gain these codes.

Nevertheless, we hope to see Google shore up Android’s defenses against this malware, as it likely affects other 2FA apps as well. But hopefully it doesn’t mean similarly drastic measures like it took with SMS and calling permissions.

More posts about Android security

Red Magic 3S play store

How Google kept billions of malicious apps off of your smartphone last year

Firefox logo sign offices

If you use Firefox browser you need to update it right now

A photograph of Google Play Protect functioning in the Googlel Play Store

15 best antivirus apps and best anti-malware apps for Android!

This is the featured image for the best security apps for android

10 best security apps for Android that aren’t antivirus apps!

This is the featured image for the best find my phone apps for android

5 best find my phone apps and other find my phone methods too!

best free VPN apps for android

15 best Android VPN apps to recover your online anonymity!

Samsung Galaxy S10e vs Google Pixel 3 camera detail angle

Google, Samsung patch Android camera flaw which allowed apps to spy on users

27/02/2020 08:42 AM