A $78 million cyberheist attempt
But cybersecurity isn’t a problem. Right?
Although the fraud requires an initial client-based attack, McAfee discovered 426 unknown variants of the typical Zeus or SpyEye malware that were difficult to detect. The most unique part of the attack is the ability for the malware to use JavaScript web injects to alter internet login experiences for users and glean login information and two-factor authentication tokens. Once the malware has successfully retrieved this information from an end user, it initiates a bank transfer while holding up a users session. “Financial institutions must take this innovation seriously,” say McAfee, warning that the latest technique can be used for other forms of physical security devices.