Close Menu
Read Us 24×7
    What's Hot
    Dark Oxygen

    Dark Oxygen: Redefining Our Understanding of Oxygen Production in the Deep Ocean

    April 25, 2025
    Android App Development Software

    17 Best Android App Development Software of 2025

    April 24, 2025
    Firestick

    10 Amazing Benefits of Owning a Firestick You Need to Know

    April 24, 2025
    Facebook X (Twitter) Instagram Pinterest LinkedIn
    Trending
    • Dark Oxygen: Redefining Our Understanding of Oxygen Production in the Deep Ocean
    • 17 Best Android App Development Software of 2025
    • 10 Amazing Benefits of Owning a Firestick You Need to Know
    • Benefits of Using a Shampoo Bar
    • nhentai.net – Why It’s Attracting Global Attention?
    • Writing Reflective Essays for Academic Success: A Students Insight
    • Why Choose an AI Learning Tablet TalPad T100 Explained
    • 9 Reasons Why People in Their 40s Should Take Daily Supplements
    Facebook X (Twitter) Instagram Pinterest LinkedIn
    Read Us 24×7
    • Home
    • Technology
      Dark Oxygen

      Dark Oxygen: Redefining Our Understanding of Oxygen Production in the Deep Ocean

      April 25, 2025
      Android App Development Software

      17 Best Android App Development Software of 2025

      April 24, 2025
      Why Choose an AI Learning Tablet TalPad T100 Explained

      Why Choose an AI Learning Tablet TalPad T100 Explained

      April 16, 2025
      Increase Your Internet Speed

      10 Ways to Increase Your Internet Speed

      April 7, 2025
      Are Trojan Horses Self Replicating

      Are Trojan Horses Self Replicating?

      April 7, 2025
    • Business
      FintechZoom.IO

      FintechZoom.IO: Revolutionizing Fintech in 2025

      April 7, 2025
      Crypto Management

      Unhosted: Revolutionizing Crypto Management with Advanced Wallet Technology

      March 20, 2025
      Bank of America Hit With Lawsuit From UBS

      Bank of America Hit With Lawsuit From UBS: What You Need to Know

      January 14, 2025
      Two-Wheeler Loans

      Understanding Two-Wheeler Loans: A Complete Guide

      December 29, 2024
      Why a Folding Umbrella is a Must-Have Accessory for Travelers

      Compact and Convenient: Why a Folding Umbrella is a Must-Have Accessory for Travelers

      December 10, 2024
    • Entertainment
      Firestick

      10 Amazing Benefits of Owning a Firestick You Need to Know

      April 24, 2025
      nhentainet

      nhentai.net – Why It’s Attracting Global Attention?

      April 20, 2025
      chatgpts-ghibli-art-generator-goes-viral-why-is-everyone-obsessed

      ChatGPT’s Ghibli Art Generator Goes Viral – Why is Everyone Obsessed?

      March 29, 2025
      Taylor Swift's Producer Suggests New Album on the Horizon

      Taylor Swift’s Producer Suggests New Album on the Horizon

      March 28, 2025
      هنتاوي.com

      هنتاوي.com: Everything You Should Know

      March 27, 2025
    • Lifestyle
    • Travel
    • Tech Q&A
    Read Us 24×7
    Home » Chameleon Banking Trojan Evolves to Bypass Biometrics
    Technology

    Chameleon Banking Trojan Evolves to Bypass Biometrics

    Sayan DuttaBy Sayan DuttaDecember 23, 20235 Mins Read
    Share Facebook Twitter Pinterest LinkedIn Reddit Email WhatsApp
    Chameleon Banking Trojan Evolves to Bypass Biometrics
    Share
    Facebook Twitter LinkedIn Pinterest Email Reddit WhatsApp

    The Chameleon banking trojan is a malicious software that targets Android devices and steals banking credentials, personal data, and other sensitive information from unsuspecting users. The trojan has recently evolved to bypass biometric authentication methods, such as fingerprint and face recognition, making it more dangerous and difficult to detect.

    The Threat of Chameleon Android Banking Trojan

    The Chameleon banking trojan was first discovered in 2019 by security researchers at ThreatFabric. The trojan belongs to the Hydra malware family, which is known for its sophisticated techniques and frequent updates. The trojan disguises itself as a legitimate app, such as a game, a utility, or a social media app, and tricks users into granting it various permissions, such as accessibility, overlay, and device administrator.

    Evolution of Chameleon Trojan

    Since its inception, the Chameleon banking trojan has undergone several changes and improvements to evade detection and enhance its capabilities. Some of the notable features of the trojan include:

    • Dynamic configuration: The trojan can download and execute commands from a remote server, allowing it to adapt to different targets and scenarios.
    • Obfuscation and encryption: The trojan uses various techniques to hide its malicious code and data, such as string encryption, code injection, and native libraries.
    • Anti-analysis and anti-emulation: The trojan can detect and prevent analysis and emulation tools, such as debuggers, root checkers, and virtual machines, from running on the infected device.
    • Anti-uninstall: The trojan can prevent users from uninstalling it by hiding its icon, blocking the settings app, and abusing the device administrator privilege.

    Previous Capabilities

    The main goal of the Chameleon banking trojan is to steal banking credentials and other sensitive information from users. The trojan can achieve this by:

    • Overlay attacks: The trojan can display fake login screens on top of legitimate banking apps, and capture the user’s input, such as username, password, and PIN.
    • Keylogging: The trojan can record the user’s keystrokes and send them to a remote server, allowing it to capture any information typed by the user, such as credit card numbers, email addresses, and passwords.
    • SMS interception: The trojan can read and delete incoming SMS messages, and send SMS messages to premium numbers, allowing it to bypass two-factor authentication and generate revenue for the attackers.
    • Screen recording: The trojan can record the user’s screen activity and send it to a remote server, allowing it to capture any information displayed on the screen, such as account balances, transaction details, and personal data.

    Unveiling the Enhanced Chameleon Variant

    In 2023, security researchers at Kaspersky Lab discovered a new variant of the Chameleon banking trojan, which has added new features and capabilities to its arsenal. The most notable feature of the new variant is its ability to bypass biometric authentication methods, such as fingerprint and face recognition, which are widely used by banking apps and other services to secure user accounts.

    New Features

    The new variant of the Chameleon banking trojan has introduced the following features to enhance its functionality and stealth:

    • RAT functionality: The trojan can act as a remote access tool (RAT), allowing the attackers to take full control of the infected device, and perform actions such as opening apps, clicking buttons, and typing text.
    • Notification manipulation: The trojan can manipulate the notifications displayed by the device, such as hiding, modifying, or creating fake notifications, to lure users into opening malicious apps or granting permissions.
    • Screen lock bypass: The trojan can bypass the screen lock of the device, such as PIN, pattern, or password, by using the accessibility service to simulate user input.

    Disruption of Biometric Authentication

    The most dangerous feature of the new variant of the Chameleon banking trojan is its ability to disrupt biometric authentication methods, such as fingerprint and face recognition, which are widely used by banking apps and other services to secure user accounts. The trojan can achieve this by:

    • Fingerprint spoofing: The trojan can spoof the fingerprint sensor of the device, and send a fake fingerprint image to the system, allowing it to unlock the device or authenticate transactions without the user’s consent.
    • Face recognition bypass: The trojan can bypass the face recognition feature of the device, by using the RAT functionality to open the front camera, and display a photo or a video of the user’s face, tricking the system into unlocking the device or authenticating transactions without the user’s consent.

    The Impact of the Modified Chameleon Variant

    The modified Chameleon banking trojan poses a serious threat to the security and privacy of Android users, as it can bypass biometric authentication methods, which are considered more secure and convenient than traditional methods, such as passwords and PINs. The impact of the modified Chameleon variant can be summarized as follows:

    • Increased risk of fraud and theft: The modified Chameleon banking trojan can steal banking credentials and other sensitive information from users, and use them to perform fraudulent transactions, such as transferring money, paying bills, or buying goods and services, without the user’s knowledge or consent.
    • Vulnerable Android devices: The modified Chameleon banking trojan can infect any Android device running on Android 6.0 or higher, which accounts for more than 90% of the Android market share. The trojan can exploit various vulnerabilities and loopholes in the Android system, such as the accessibility service, the overlay feature, and the biometric framework, to gain access and control over the device.
    Share. Facebook Twitter Pinterest LinkedIn Email Reddit WhatsApp
    Previous ArticleThe Evolution of Slot Machines: How Technology is Changing Your Slot Gaming in New Zealand
    Next Article UDC Unveils Game-Changing Blue PHOLED Materials for Mass Production
    Avatar for Sayan Dutta
    Sayan Dutta
    • Website
    • Facebook
    • X (Twitter)
    • Pinterest
    • Instagram
    • LinkedIn

    I am glad you came over here. So, you want to know a little bit about me. I am a passionate digital marketer, blogger, and engineer. I have knowledge & experience in search engine optimization, digital analytics, google algorithms, and many other things.

    Related Posts

    Dark Oxygen
    Technology

    Dark Oxygen: Redefining Our Understanding of Oxygen Production in the Deep Ocean

    April 25, 2025
    Android App Development Software
    Reviews

    17 Best Android App Development Software of 2025

    April 24, 2025
    Why Choose an AI Learning Tablet TalPad T100 Explained
    Technology

    Why Choose an AI Learning Tablet TalPad T100 Explained

    April 16, 2025

    Table of Contents

    • The Threat of Chameleon Android Banking Trojan
      • Evolution of Chameleon Trojan
      • Previous Capabilities
    • Unveiling the Enhanced Chameleon Variant
      • New Features
      • Disruption of Biometric Authentication
    • The Impact of the Modified Chameleon Variant

    Top Posts

    Dark Oxygen

    Dark Oxygen: Redefining Our Understanding of Oxygen Production in the Deep Ocean

    April 25, 2025
    Android App Development Software

    17 Best Android App Development Software of 2025

    April 24, 2025
    Firestick

    10 Amazing Benefits of Owning a Firestick You Need to Know

    April 24, 2025
    Shampoo-bars

    Benefits of Using a Shampoo Bar

    April 21, 2025
    Popular in Social Media
    Anon IG Viewer

    Anon IG Viewer: Best Anonymous Viewer for Instagram

    April 3, 2025
    CFBR

    How to Use CFBR Appropriately? (Pros and Cons)

    September 24, 2024
    EU to Get WhatsApp, Messenger Interoperability with iMessage, Telegram and More

    EU to Get WhatsApp, Messenger Interoperability with iMessage, Telegram and More

    September 9, 2024
    New in Health
    9 Reasons Why People in Their 40s Should Take Daily Supplements

    9 Reasons Why People in Their 40s Should Take Daily Supplements

    April 8, 2025
    Why Put Your Tampons In The Freezer

    Why Put Your Tampons In The Freezer? (Answered)

    November 26, 2024
    WellHealthOrganic Buffalo Milk Tag

    WellHealthOrganic Buffalo Milk Tag: Unveiling Nutritional Brilliance

    November 13, 2024

    google news

    google-play-badge

    Protected by Copyscape

    DMCA.com Protection Status

    Facebook X (Twitter) Instagram Pinterest
    • Terms of Service
    • Privacy Policy
    • Contact Us
    • About
    • Sitemap
    • Write For Us
    • Submit Press Release
    Copyright © 2025 - Read Us 24x7

    Type above and press Enter to search. Press Esc to cancel.