Zeus spoofs Visa, MasterCard security programs

Article

Zeus spoofs Visa, MasterCard security programs

SearchFinancialSecurity.com Staff

The Zeus Trojan is using a new tactic to fool users by exploiting the Verified by Visa and MasterCard SecureCode security programs, researchers at online security provider Trusteer Inc. said.

When users of machines infected with Zeus start up an online banking session, the bank Trojan injects a fake enrollment screen for one of the security programs and prompts users to input their Social Security number, credit or debit card number, expiration date, and PIN or CSV code, according to New York-based Trusteer.

In the scheme, users are told that new FDIC rules require that they enroll in the Verified by Visa/MasterCard SecureCode program to protect their accounts.

Criminals use the data collected by Zeus to commit fraudulent transactions with retailers that use the payment card security programs, Trusteer said. The company, which supplies a browser security plug-in, discovered the new Zeus scheme through its Flashlight computer forensic service.

The Zeus Trojan, also called Zbot, has been used extensively by criminals in online banking heists, mostly against small and midsize businesses, nonprofits and municipalities.

    Requires Free Membership to View

    SearchFinancialSecurity.com members gain immediate and unlimited access to in-depth technical advice, strategies, and expert guides for securing data in high-risk financial environments. Join me on SearchFinancialSecurity.com today!

    Michael S. Mimoso, Editorial Director

    By submitting your registration information to SearchFinancialSecurity.com you agree to receive email communications from TechTarget and TechTarget partners. We encourage you to read our Privacy Policy which contains important disclosures about how we collect and use your registration and other information. If you reside outside of the United States, by submitting this registration information you consent to having your personal data transferred to and processed in the United States. Your use of SearchFinancialSecurity.com is governed by our Terms of Use. You may contact us at webmaster@TechTarget.com.