News

New Citadel malware targets Payza online payment platform

Thursday 23 May 2013 11:45 CET | News

A new type of Citadela financial malware is targeting users of the Payza online payment platform by launching local in-browser attacks to steal their credentials, according to researchers from Trusteer, an Israel-based web access services provider.

The new Citadel variant discovered by Trusteer researchers contains Man-in-the-Browser (MitB) code which alters the form fields users are asked to fill in on Payzas log-in page. More specifically, the code adds an additional PIN (personal identification number) field to the authentication form.

Citadel is a Trojan program designed primarily to steal online banking credentials, but is also associated with the Reveton ransomware, which locks down computers and displays rogue alerts claiming to come from law enforcement agencies.

Citadels hooks into the browser process can modify web pages opened on infected computers in real time. These rogue local website modifications are known as MitB attacks and are harder for victims to spot than regular phishing attacks because the URLs displayed in the browser address bar are those of legitimate websites.

Payza is a payment platform for e-commerce, corporate disbursements and remittances, which will enable worldwide international payment transfers for individuals and businesses.
 


Free Headlines in your E-mail

Every day we send out a free e-mail with the most important headlines of the last 24 hours.

Subscribe now

Keywords: Payza, Trusteer, malware, online fraud, online payments, US
Categories: Fraud & Financial Crime
Companies:
Countries: World
This article is part of category

Fraud & Financial Crime






Industry Events