Banking data theft attacks on smartphones surged in 2024

Published
0

ISLAMABAD: The number of cyberattacks on smartphones to steal users’ banking credentials surged by 196 per cent in 2024 compared to the previous year, a new report has claimed.

The number of Trojan banker attacks on Android smartphones increased from 420,000 in 2023 to 1,242,000 in 2024, Russian cybersecurity and anti-virus firm Kaspersky said in its report.

Trojan banker malware are malicious computer programmes designed to gain access to a person’s online banking, e-payment or credit card services by stealing their credentials.

“Cybercriminals are shifting tactics, relying on mass malware distribution to steal banking credentials,” said the report titled ‘The mobile malware threat landscape in 2024’.

“Over the past year, more than 33.3 million attacks on smartphone users globally, involving various types of malware and unwanted software.”

Cybercriminals trick victims into downloading Trojan bankers by spreading links via SMS or messaging apps, attachments in email or other messengers and by directing users to malicious webpages.

In some cases, cybercriminals send messages from a hacked contact’s account, making the fraud appear more trustworthy, the report added. To deceive users, attackers often exploit trending news and hype topics to create a sense of urgency and lower victims’ guard.

Although Trojan bankers were the fastest-growing type of malware, they rank fourth overall in terms of the share of attacked users at 6pc. The most widespread category remains AdWare, accounting for 57pc of attacked users, followed by general Trojans (25pc) and RiskTools (12pc).

Adware is a type of malware or malicious software that delivers targeted advertisements to users. A Trojan virus disguises itself as legitimate software to trick users into installing it.

Shahzad Shahid, a policy advocate and IT expert, said the alarming rise in mobile banking malware attacks called for a multi-faceted approach to cybersecurity.

He said people must be educated on safe digital practices, such as avoiding suspicious links, using multi-factor authentication and installing security updates regularly.

Published in Dawn, March 7th, 2025

Opinion

Editorial

Kashmir unresolved
Updated 30 Sep, 2026

Kashmir unresolved

The just solution lies in India addressing the issue through a trilateral dialogue involving the legitimate representatives of the Kashmiri people and Pakistan.
Water shortage
30 Sep, 2026

Water shortage

THAT the country is entering the Rabi season with an anticipated water shortage of nearly 25pc, the lowest carryover...
Young hearts
30 Sep, 2026

Young hearts

THE observance may have passed, but the message of World Heart Day should not fade with it. The occasion is a useful...
Terror and politics
Updated 29 Sep, 2026

Terror and politics

There is an urgent need to tone down the rhetoric and tackle terrorism as a collective challenge for both the affected provinces and the federation.
Watching the glaciers
29 Sep, 2026

Watching the glaciers

THE latest signs from Pakistan’s mountains are worrying. Suparco says the number of unfrozen glacial lakes it...
Dangerous agenda
29 Sep, 2026

Dangerous agenda

AS the world remains fixated on the US-Iran conflict, elsewhere in the Middle East, Israel is consolidating its grip...