• Cryptocurrency
  • Earnings
  • Enterprise
  • About TechBooky
  • Submit Article
  • Advertise Here
  • Contact Us
TechBooky
  • African
  • AI
  • Metaverse
  • Gadgets
Generic selectors
Exact matches only
Search in title
Search in content
Post Type Selectors
  • African
  • AI
  • Metaverse
  • Gadgets
Generic selectors
Exact matches only
Search in title
Search in content
Post Type Selectors
TechBooky
Generic selectors
Exact matches only
Search in title
Search in content
Post Type Selectors
Home Security

The NCC Says Xenomorph Malware Can Steal Your Banking Info, Here’s What To Know.

The NCC Computer Security Incident Response Team leads the investigation

Paul Balo by Paul Balo
March 1, 2022
in Security
Share on FacebookShare on Twitter

The internet infrastructure community is prone to cyber-attacks and that is where cyber security is indulged to play a vital role in this field. The Nigerian Communication Commission has been responsive lately with dealing with possible Trojan-like viruses dubbed Xenomorph malware.

The NCC’s Computer Security Incident Response Team discovers malicious software programmed to steal Nigerians’ personal information with stealth for further illicit activity.

The NCC’s Computer Security Incident Response Team has prioritized the processes in which this software programmed and dubbed it the ‘Xenomorph’ attack. This malware is built to penetrate the Android OS firewall to copy bank credentials and other sensitive credentials processed in the smartphone.

The NCC’s Computer Security Incident Response Team discovered the vulnerability of Android OS and said that it is prone to the Xenomorph malware. Recall several cyberattacks on the European financial market when multiple financial institutions got robbed of cash via digital penetrations.

The Nigerian commission discovered the malware per the unprecedented Xenomorph trends from overseas — with Android users as its primary targets.

It is worth noting that these financial institutions utilize high-end technology applications, yet they got mugged by the Xenomorph. Once the malware gets its way into the Android device, Xenomorph intercepts notifications then filters the bank credentials and other sensitive credentials paired with an in-built SMS app.

The Android OS vulnerability to the Xenomorph attack also breaches the two-factor authentication system. Recall the malware is programmed to intercept notification likewise breaching the two-factor authentication token. The malware is designed for the Android OS — the NCC did not disclose the Xenomorph responsiveness to the iOS platform.

“In reality, this app is only a means by which the Xenomorph Trojan could be propagated easily and efficiently. To avoid early detection or being denied access to the PlayStore, ‘Fast Cleaner’ was disseminated before the malware was placed on the remote server, making it hard for Google to determine that such an app is being used for malicious actions,” Danbatta said.

“Once up and running on a victim’s device, Xenomorph can harvest device information and Short Messaging Service, intercept notifications and new SMS messages, perform overlay attacks, and prevent users from uninstalling it.” The malware invaded the supplier of Android apps, the Google Play Store. “The threat also asks for Accessibility Services privileges, which allow it to grant itself further permissions.”

The Xenomorph malware is disguised as a regular app in Google’s app world christened ‘Fast Cleaner’ — this app is meant to optimize the Android device and clear junks that enhance the battery life. Several Nigerians have reportedly installed the app on their smartphones, including the regular African population.

For context, the Fast Cleaner boosters the Android device’s speed, it also invades its users’ finance and steals funds. The NCC revealed the Xenomorph attacks by stealth to replicate users’ bank credentials — to the extent of intercepting a two-factor authentication token.

The NCC has records of several victims of the Xenomorph malware — it camouflages on the login page of bank apps — the administrator of the malware can retrieve the 2FA tokens because the Xenomorph activity is synced with the same Android device.

Still, the Computer Security Incident Response Team did not reveal how the Xenomorph malware responds to the iOS platform. This explains how certified iOS security is not vulnerable to Xenomorph malware.

The Fast Cleaner is active in the Apple App Store — is the iPhone vulnerable to the Xenomorph malware? This is a non-rhetoric question the NCC should publish a report.

The Xenomorph malware can also hack your digital wallets, including a digital currency saved in a decentralized network. In sum, this is a priority warning to Android users optimizing their device with Fast Cleaner should stop and delete every trace of the app, Techbooky writes.

Related Posts:

  • Top_Cybersecurity_Projects
    Cybersecurity Projects for Both beginners and Experts
  • router-595x335_0
    US And UK Warn Of Custom Malware Vulnerability On…
  • Explained_-What-is-the-Toll-Fraud-malware-how-it-attacks-Android-devices-and-how-to-protect-yourself
    Microsoft Warns Of A Dangerous Android Malware…
  • Google Is Developing The Play Store Security System To Purge Bots.
    Google Is Developing The Play Store Security System…
  • Small-Business-Scale-In-Nigeria
    Small Businesses In Nigeria Are Still In Danger,…
  • Robotics
    Nigeria Ranked As Africa’s Second Most Cyber-secure…
  • Microsoft Teams
    Microsoft Teams Vulnerability Exposes User Systems
  • New-mtn-logo-800×630
    MTN Declares Core Infrastructure Secure After Cyberattack

Discover more from TechBooky

Subscribe to get the latest posts sent to your email.

Tags: androidcyber attackcyber securitymalwarenccXenomorph
Paul Balo

Paul Balo

Paul Balo is the founder of TechBooky and a highly skilled wireless communications professional with a strong background in cloud computing, offering extensive experience in designing, implementing, and managing wireless communication systems.

BROWSE BY CATEGORIES

Receive top tech news directly in your inbox

subscription from
Loading

Freshly Squeezed

  • AI Helps Google One Reach 150 Million Subscribers May 16, 2025
  • FT Lists Paymenow, TymeBank & Omnisient Among Africa’s Fastest-Growing Firms May 16, 2025
  • MoonPay and Mastercard Partner to Advance Stablecoin Payments May 16, 2025
  • Google Gemini Advanced Users Can Now Link to GitHub May 16, 2025
  • TikTok Accused of Violating EU Internet Content Rules May 15, 2025
  • Activists and Users Criticize NCC & Telcos Over Customer Penalties May 15, 2025

Browse Archives

May 2025
MTWTFSS
 1234
567891011
12131415161718
19202122232425
262728293031 
« Apr    

Quick Links

  • About TechBooky
  • Advertise Here
  • Contact us
  • Submit Article
  • Privacy Policy

Recent News

AI Helps Google One Reach 150 Million Subscribers

AI Helps Google One Reach 150 Million Subscribers

May 16, 2025
FT Lists Paymenow, TymeBank & Omnisient Among Africa’s Fastest-Growing Firms

FT Lists Paymenow, TymeBank & Omnisient Among Africa’s Fastest-Growing Firms

May 16, 2025
MoonPay and Mastercard Partner to Advance Stablecoin Payments

MoonPay and Mastercard Partner to Advance Stablecoin Payments

May 16, 2025
Google Gemini Advanced Users Can Now Link to GitHub

Google Gemini Advanced Users Can Now Link to GitHub

May 16, 2025
TikTok Accused of Violating EU Internet Content Rules

TikTok Accused of Violating EU Internet Content Rules

May 15, 2025
Activists and Users Criticize NCC & Telcos Over Customer Penalties

Activists and Users Criticize NCC & Telcos Over Customer Penalties

May 15, 2025
  • Login

© 2021 Design By Tech Booky Elite

Generic selectors
Exact matches only
Search in title
Search in content
Post Type Selectors
  • African
  • Artificial Intelligence
  • Gadgets
  • Metaverse
  • Tips
  • About TechBooky
  • Advertise Here
  • Submit Article
  • Contact us

© 2021 Design By Tech Booky Elite

Discover more from TechBooky

Subscribe now to keep reading and get access to the full archive.

Continue reading

We use cookies to ensure that we give you the best experience on our website. If you continue to use this site we will assume that you are happy with it.Ok