Tech and Teen
  • Technology
  • Teen
  • Entertainment
  • Sports
  • Politics
  • Business
  • World
  • Multimedia
  • IT HOT
  • Blog
  • Technology
  • Business
  • Sports
  • Entertainments

Tech and Teen

  • Technology
  • Teen
  • Entertainment
  • Sports
  • Politics
  • Business
  • World
  • Multimedia
  • IT HOT
  • Blog

Kaspersky uncovers new Grandoreiro light variant

by Tech and Teen October 23, 2024
written by Tech and Teen October 23, 2024
Kaspersky uncovers new Grandoreiro light variant

Despite the arrest of important operators in early 2024, Grandoreiro continues to be used by its partners in new campaigns. Kaspersky Global Research and Analysis team (GReAT) has discovered a new light version focused on Mexico targeting around 30 banks. These findings are to be highlighted at the Security Analyst Summit (SAS) 2024. Remaining one of the most active threats globally and targeting users of more than 1,700 banks, Grandoreiro variants account for around five percent of banking trojan attacks this year. Mexico is one of the most targeted countries by various Grandoreiro strains, including the new light version, seeing 51,000 recorded incidents this year.

After assisting an INTERPOL-coordinated action, which has led to Brazilian authorities arresting operators behind a Grandoreiro banking trojan operation, Kaspersky discovered that the group’s codebase has been split into lighter, fragmented versions of the trojan, to continue its attacks. Recent analysis has identified a specific light version focused primarily on Mexico, which has been used to target approximately 30 financial institutions. The creators likely have access to the source code and are launching new campaigns using the simplified legacy malware.

“All the recent developments underscore the evolving nature of the threat. Fragmented and lighter versions may represent a trend that could extend beyond Mexico and into other regions, including beyond Latin America. However, we believe that only some trusted affiliates have access to the malware source code to develop such lighter versions. Grandoreiro operates differently from the traditional ‘Malware-as-a-Service’ model we are accustomed to. You won’t find announcements on underground forums selling the Grandoreiro package; instead, access to it appears to be limited,” explains Fabio Assolini, head of the Latin American (GReAT) at Kaspersky.

Multiple variants of Grandoreiro, including the new light version and the primary malware, accounted for approximately five percent of global banking trojan attacks detected by Kaspersky in 2024, making it one of the most active threats worldwide. Kaspersky has also analyzed the newer samples of the primary Grandoreiro from 2024, and observed new tactics. It records mouse activity to mimic real user patterns, aiming to evade detection by machine learning-based security systems that analyze behavior. By replaying natural mouse movements, the malware aims to trick anti-fraud tools into seeing the activity as legitimate.
Additionally, Grandoreiro has adopted a cryptographic technique known as Ciphertext Stealing (CTS), which Kaspersky has never seen being used in malware. In this case, its aim is to encrypt the malicious code strings. “Grandoreiro has a large and complex structure, which would make it easier for security tools or analysts to detect if its strings were not encrypted. This is likely why they introduced this new technique – to complicate the detection and analysis of their attacks,” Fabio Assolini elaborated.
Kaspersky data indicates Grandoreiro has been active since 2016. In 2024, the threat targets more than 1,700 financial institutions and 276 cryptocurrency wallets across 45 countries and territories, lastly adding Asia and Africa to the list of its targets, making it a truly global financial threat.

 

 

Kaspersky
0 comment
0
FacebookTwitterGoogle +PinterestLinkedinWhatsapp
previous post
Enjoy exciting cashback on Samsung’s premium D-Series 4K AI TVs
next post
Banglalink Introduces Exciting Value Back Offers on iPhone 16 Series

related posts

Businesses spending a higher percentage of technology budgets...

September 15, 2022

A Look Inside:vivo Tokyo R&D Center

April 1, 2022

Digital Hospital Collaborates with Swisscontact to Launch E-Specialist...

January 28, 2022

Samsung Galaxy A7 in the country: Pre-order starts

October 12, 2018

TECNO’s AI-Powered Smartphone Revolution⁠

June 1, 2024

Shohoz Rides accolades the best rider

October 9, 2018

Microsoft ScaleUp launched in Bangladesh

October 6, 2018

Free screen replacement facility on pre-book of OPPO...

September 27, 2018

bKash offers up to 50% discount on tour...

October 31, 2018

Walton offers ‘Sadhooer Moddhe Srestho TV’ centering World...

May 2, 2019

Seeds for the Future 2019: It is a...

February 22, 2019

National Hackathon final

August 1, 2018

Leave a Comment Cancel Reply

Save my name, email, and website in this browser for the next time I comment.

Recent Posts

  • Pepe Jeans Powers up in Jaipur with its Biggest Indian Store Yet

    May 15, 2025
  • Shafayat Alam takes helm as CEO of Nagad

    May 14, 2025
  • Global Investors Witness PriyoShop’s Impact Firsthand

    May 14, 2025
  • Buyers win iPhones by buying products from ‘Beauty Booth’

    May 14, 2025

Popular Posts

  • 1

    Uber expands services to 20 cities across all 8 Divisions in Bangladesh

  • 2

    Uber Eats to launch in Dhaka on April 30

  • 3

    Infinix to Drop Best Gaming phone soon: Hot 12 Series

  • 4

    Xiaomi kicks off amazing Eid offers, announces everyday laptop giveaway

  • 5

    Global Investors Witness PriyoShop’s Impact Firsthand

Archives

  • May 2025
  • April 2025
  • March 2025
  • February 2025
  • January 2025
  • December 2024
  • November 2024
  • October 2024
  • September 2024
  • August 2024
  • July 2024
  • June 2024
  • May 2024
  • March 2024
  • February 2024
  • January 2024
  • December 2023
  • November 2023
  • August 2023
  • July 2023
  • June 2023
  • May 2023
  • April 2023
  • March 2023
  • February 2023
  • January 2023
  • December 2022
  • November 2022
  • October 2022
  • September 2022
  • August 2022
  • July 2022
  • June 2022
  • May 2022
  • April 2022
  • March 2022
  • February 2022
  • January 2022
  • December 2021
  • November 2021
  • October 2021
  • September 2021
  • August 2021
  • July 2021
  • June 2021
  • May 2021
  • April 2021
  • March 2021
  • February 2021
  • January 2021
  • December 2020
  • November 2020
  • October 2020
  • September 2020
  • August 2020
  • July 2020
  • June 2020
  • May 2020
  • April 2020
  • March 2020
  • February 2020
  • January 2020
  • December 2019
  • November 2019
  • October 2019
  • September 2019
  • August 2019
  • July 2019
  • June 2019
  • May 2019
  • April 2019
  • March 2019
  • February 2019
  • January 2019
  • December 2018
  • November 2018
  • October 2018
  • September 2018
  • August 2018
  • July 2018

Mobiles

  • realme launches C75x: The ultra-waterproof smartphone under Tk 18,000 in Bangladesh

  • TECNO launches CAMON 40 Series with FlashSnap & IP68 & IP69 Waterproof technology

  • Infinix leading another lifestyle with Note 50 series

  • Stylish HONOR X8c to hit Bangladesh market soon with 512GB Massive Storage

  • vivo V50 Lite Launches in Bangladesh with Tahsan at Grand Event

Popular Posts

  • 1

    Uber Eats to launch in Dhaka on April 30

  • Givaudan opens new Flavours manufacturing facility in Pune

  • 3

    Valentine’s Day store at kaymu

  • 4

    Walton customers likely to get free products in International Trade Fair- 2019

  • Nagad app and its Digital KYC launched Whats benefit?  


Tech and Teen is proudly powered by WordPress