Malware
BreakingHighlightTop StoryTrending Story

NCC warns android phone users against new damaging malware, “Flubot”

440

 

By Ajuma Edwina Ameh

“The malware is circulated through Short Message Service (SMS) and can snoop “on incoming notifications, initiate calls, read or write SMSes, and transmit the victim’s contact list to its control centre”

“Flubot also impersonates Android mobile banking applications to steal personal data, credit card details or online banking credentials’

“It attacks Android devices by pretending to be “FedEx, DHL, Correos, and Chrome applications” and compels unsuspecting users to alter the accessibility configurations on their devices in order to maintain continuous presence on devices”

The Nigerian Communications Commission (NCC) has alerted android phone users in the country of the existence of new, high-risk and extremely-damaging Malware called “Flubot”.

The Director of Public Affairs of NCC, Dr Ikechukwu Adinde, who gave the warning in a statement issued on Friday, said information received from the Nigeria Computer Emergency Response Team (ngCERT), revealed that Flubot “targets Androids with fake security updates and App installations.

Adinde said the malware is circulated through Short Message Service (SMS) and can snoop “on incoming notifications, initiate calls, read or write SMSes, and transmit the victim’s contact list to its control centre.”

According to him, Flubot also impersonates Android mobile banking applications to steal personal data, credit card details or online banking credentials.

“It attacks Android devices by pretending to be “FedEx, DHL, Correos, and Chrome applications” and compels unsuspecting users to alter the accessibility configurations on their devices in order to maintain continuous presence on devices.

“The new malware undermines the security of devices by copying fake login screens of prominent banks, and the moment the users enter their login details on the fake pages, their data is harvested and transmitted to the malware operators’ control point from where the data is exploited by intercepting banking-related One Time Passwords (OTPs) and replacing the default SMS app on the targeted Android device.

“Consequently, it secures admittance into the device through SMS and proceeds to transmit similar messages to other contacts that may be on the device it has attacked enticing them into downloading the fake app.

“It suffices to say that, when Flubot infects a device, it can result in incalculable financial losses.

“Additionally, the malware creates a backdoor which grants access to the user’s device, thus enabling the invader or attacker to perform other criminal actions, including launching other variants of malware,” the statement explained.

The NCC further listed different ways telecom consumers can protect themselves from the attack.

“In view of this discovery and understanding of the process by which this malware operates, and in order to protect millions of telecom consumers and prevent criminal forces, irrespective of location, from using telecom platforms to perpetrate fraud and irredeemable damages, the NCC hereby wishes to reiterate the advisory of ngCERT as follows;

“Do not click on the link if you receive a suspicious text message, and do not install any app or security update the page asks you to install; Use updated antivirus software that detects and prevents malware infections; Apply critical patches to the system and application.

“Use strong passwords and enable Two-Factor Authentication (2FA) over logins; Back-up your data regularly; If you have been affected by this campaign, you should reset your device to factory mode as soon as possible. This will delete any data on your phone, including personal data.

“Do not restore from backups created after installing the app. You may contact ngCERT on *incident@cert.gov.ng* for technical assistance. You will also need to change the passwords to all of your online accounts, with urgency, around your online bank accounts.

“If you have concerns that your accounts may have been accessed by unauthorised people, contact your bank immediately,” it said.

 

 

Leave a comment

Related Articles

Exclusive: Building shops on Karu market’s entrance road: Greed or sheer disregard for safety?

Months after a devastating fire ravaged Karu market in the Federal Capital...

Senate announces May 6 as new resumption date

The 10th Senate’s leadership has announced a new resumption date of May...

President Tinubu Mourns Pope Francis, Hails Late Pontiff as ‘Voice of Justice for the World’s Forgotten’

President Bola Ahmed Tinubu has expressed deep sorrow over the passing of...

No Progress on Siemens Power Project Until Tinubu Took Office, Minister Insists

Power Minister Adebayo Adelabu has reaffirmed President Bola Tinubu’s administration’s commitment to...

Breaking: Pope Francis, 88, exits

The Vatican has confirmed the passing of Pope Francis, the 266th Pope...

NIPR Spokesperson of the Year 2025: GOCOP Congratulates NNPCL’s Femi Soneye on Prestigious Award

The Guild of Corporate Online Publishers (GOCOP) has extended its heartfelt congratulations...

NDLEA foils cocaine smuggling, concealed in religious books bound for Saudi Arabia

In another major bust, the National Drug Law Enforcement Agency (NDLEA) operatives...

Flamingos Soar to Victory in U-17 World Cup Qualifiers

Nigeria’s U-17 women’s team, the Flamingos, has taken a significant step towards...

Update: Lagos Building Collapse Claims 5 Lives, 13 Survive

The devastating multi-storey building collapse which occurred on Saturday morning at Oremeta...

Legendary Journalist and ex-NUJ National Secretary, Jola Ogunlusi Passes On at 91

A journalism icon and former National Secretary of the Nigerian Union of...

NDLEA CEO Inaugurates New Kano Facilities, Urges Officers to Remain Resolute in Drug Fight

NDLEA Chairman/CEO, retired Brig.-Gen. Mohamed Marwa, has urged the agency’s officers to...

Davido and Chioma Press Pause on Having More Kids

Afrobeats superstar David Adeleke, popularly known as Davido, has shared that he...

Ojodu-Berger Building Update: Rescue Teams Pull Out Five Survivors

Five people have so far been rescued from the rubble of the...

Breaking: Lagos Building Collapse: Many Feared Trapped as Multi-Storey Building Crumbles

A four-storey building on Saturday morning collapsed in Lagos with occupants trapped,...

Presidency Denies Reports of VP Shettima Being Denied Access to Villa

The Presidency has dismissed reports that Vice President Kashim Shettima was denied...

Just in: FG closes Enugu airport for urgent runway maintenance

The Federal Government has ordered the temporary closure of Akanu Ibiam International...

NDPHC invests N500bln in power infrastructure nationwide – MD Adighije

The Managing Director and CEO of the Niger Delta Power Holding Company...

Decentralized Police System Can Curb Jungle Justice, Extrajudicial Killings -Tietie

Mr. Frank Tietie, Executive Director of Citizens Advocacy for Social and Economic...

NDLEA Raid in Abuja Turns Violent, Three Operatives Sustain Gunshot Injuries

Three National Drug Law Enforcement Agency (NDLEA) officers were hospitalized on Thursday...

Bukky Fagbuyi Speaks Out: ‘Date Them or Go Nowhere’ – A Stark Reality of Nollywood’s Sexual Harassment

Nollywood actress Bukky Fagbuyi has shared a personal and unsettling account of...