First iOS Trojan Steals Facial Recognition Data for Malicious Purposes, Threatens Bank Accounts

Date:

Updated: [falahcoin_post_modified_date]

Group-IB Discovers First-Ever iOS Trojan: GoldDigger Steals Facial Recognition Data

A new iOS Trojan has been uncovered by cybersecurity firm Group-IB, marking the first instance of such malware targeting Apple’s operating system. Dubbed GoldDigger, the Trojan steals facial recognition data for malicious purposes, including unauthorized access to bank accounts. This discovery is particularly concerning as some Asian countries, like Thailand and Vietnam, have plans to implement facial biometric verification for banking transactions in the near future.

GoldDigger is derived from an Android Trojan called GoldDigger, which targeted over 50 financial institutions in Vietnam last October. Group-IB has been actively tracking a series of aggressive banking Trojans in the Asia-Pacific region. The malware is capable of evolving its capabilities and evading detection, making it a significant threat.

The Trojan, known as GoldPickaxe.iOS, originated from the same family as the Android-based GoldDigger, which was first launched in June 2023. Subsequently, variants such as GoldDiggerPlus and GoldKefu emerged. In October, the malware expanded its reach to iOS devices, highlighting the growing sophistication of cybercriminals.

GoldDigger not only collects facial recognition data but also intercepts SMS messages, enabling it to gather personal information and confirmation texts used to authenticate logins and make account changes. This data can potentially be exploited by malicious actors, who can create deepfake content using AI-powered face-swapping technology.

The Trojan was discovered on TestFlight, Apple’s mobile app testing platform, but was swiftly removed. The cybercriminal behind the malware, referred to as GoldFactory, then engaged in a complex social engineering scheme to persuade users to install a Mobile Device Management profile. By doing so, the malware gains full control over the infected device. Group-IB suspects GoldFactory may be associated with a cybercrime group known as Gigabud.

Currently, Group-IB advises iOS users in Vietnam and Thailand to exercise caution and change their passwords if they suspect any suspicious downloads. However, there is a possibility that the malware has already spread to other regions. A new variant called GoldDiggerPlus has also been identified, which allows threat actors to convincingly pose as legitimate customer service representatives to deceive their targets.

To protect themselves, users are advised to be vigilant when downloading any files or applications and to regularly change their security questions and passwords, ensuring they do not reuse them. If contacted by someone claiming to be a company representative, it is recommended to hang up and independently verify the legitimacy of the call before providing any information.

As the threat of malware continues to evolve, it is crucial for individuals to stay informed and take necessary precautions to safeguard their personal and financial information. By remaining cautious and proactive, users can minimize the risk of falling victim to such malicious attacks.

[single_post_faqs]
Neha Sharma
Neha Sharma
Neha Sharma is a tech-savvy author at The Reportify who delves into the ever-evolving world of technology. With her expertise in the latest gadgets, innovations, and tech trends, Neha keeps you informed about all things tech in the Technology category. She can be reached at neha@thereportify.com for any inquiries or further information.

Share post:

Subscribe

Popular

More like this
Related

Revolutionary Small Business Exchange Network Connects Sellers and Buyers

Revolutionary SBEN connects small business sellers and buyers, transforming the way businesses are bought and sold in the U.S.

District 1 Commissioner Race Results Delayed by Recounts & Ballot Reviews, US

District 1 Commissioner Race in Orange County faces delays with recounts and ballot reviews. Find out who will come out on top in this close election.

Fed Minutes Hint at Potential Rate Cut in September amid Economic Uncertainty, US

Federal Reserve minutes suggest potential rate cut in September amid economic uncertainty. Find out more about the upcoming policy decisions.

Baltimore Orioles Host First-Ever ‘Faith Night’ with Players Sharing Testimonies, US

Experience the powerful testimonies of Baltimore Orioles players on their first-ever 'Faith Night.' Hear how their faith impacts their lives on and off the field.