Banking data theft attacks on smartphones surged in 2024

Published
0

ISLAMABAD: The number of cyberattacks on smartphones to steal users’ banking credentials surged by 196 per cent in 2024 compared to the previous year, a new report has claimed.

The number of Trojan banker attacks on Android smartphones increased from 420,000 in 2023 to 1,242,000 in 2024, Russian cybersecurity and anti-virus firm Kaspersky said in its report.

Trojan banker malware are malicious computer programmes designed to gain access to a person’s online banking, e-payment or credit card services by stealing their credentials.

“Cybercriminals are shifting tactics, relying on mass malware distribution to steal banking credentials,” said the report titled ‘The mobile malware threat landscape in 2024’.

“Over the past year, more than 33.3 million attacks on smartphone users globally, involving various types of malware and unwanted software.”

Cybercriminals trick victims into downloading Trojan bankers by spreading links via SMS or messaging apps, attachments in email or other messengers and by directing users to malicious webpages.

In some cases, cybercriminals send messages from a hacked contact’s account, making the fraud appear more trustworthy, the report added. To deceive users, attackers often exploit trending news and hype topics to create a sense of urgency and lower victims’ guard.

Although Trojan bankers were the fastest-growing type of malware, they rank fourth overall in terms of the share of attacked users at 6pc. The most widespread category remains AdWare, accounting for 57pc of attacked users, followed by general Trojans (25pc) and RiskTools (12pc).

Adware is a type of malware or malicious software that delivers targeted advertisements to users. A Trojan virus disguises itself as legitimate software to trick users into installing it.

Shahzad Shahid, a policy advocate and IT expert, said the alarming rise in mobile banking malware attacks called for a multi-faceted approach to cybersecurity.

He said people must be educated on safe digital practices, such as avoiding suspicious links, using multi-factor authentication and installing security updates regularly.

Published in Dawn, March 7th, 2025

Opinion

Editorial

Makkah agreement
Updated 09 Aug, 2026

Makkah agreement

IN the midst of a gruelling war between the US and Iran — currently at a stalemate — the signing of the Makkah...
Conflicting priorities
09 Aug, 2026

Conflicting priorities

THERE is a reasonable argument that the democratic process must go on regardless of prevailing conditions; that...
FIFA controversy
09 Aug, 2026

FIFA controversy

FIFA PRESIDENT Gianni Infantino is at the centre of a storm of his own making. Even after a crisis meeting in...
Danger ahead
Updated 08 Aug, 2026

Danger ahead

PAKISTAN has already paid a heavy human price this monsoon, even as another dangerous spell approaches. NDMA figures...
Israeli impunity
08 Aug, 2026

Israeli impunity

ANY hope that Hamas’s decision to disarm would lead to a breakthrough has been dashed for one simple reason:...
Flawed investigations
Updated 08 Aug, 2026

Flawed investigations

An inaccurate record of a victim’s wounds hinders the dispensation of justice. Medical examiners in such a critical area cannot cut corners.