Chameleon Android malware can now bypass fingerprint security to steal info

Chameleon has new powers to ignore fingerprints and force PIN security to hack banking and crypto apps.

As technology grows daily, so does malware and one among many can now get around one of the toughest security measures on Android. This is the Chameleon malware, known for hiding quietly inside a device while stealing information.

Chameleon was first detected earlier this year and only known to affect users in Australia and Poland. At that time, the malware only had limited capabilities and could be countered by some mobile security measures.

However, the malware evolved into something more dangerous because it could now bypass one of the strongest mobile security measures – the fingerprint biometric. This biometric is higher than PIN and some apps, services, or mobile functions limit access to fingerprint permission only.

How Chameleon Bypasses Fingerprint Security

At ThreatFabric, researchers identified two new powers of Chameleon. First, it now has an extended reach after it was found in Italy and the UK. It means that the malware can grow to reach even more territories.

Second, it can now bypass fingerprint security by forcing the use of PIN. The malware utilizes the KeyguardManager API and AccessibilityEvent to check security measures, and then deploys the AccessibilityEvent to favor PIN authorization. This is major because a user may not realize that an attack is happening since the PIN still works.

What Does Chameleon Do?

Once it takes control of the device, it can easily gather user information to log in banking and crypto apps. Threat actors can steal data from those apps, leaving users confused as to what happened despite security measures in place.

How to Counter Chameleon?

Never download apps from third-party sources. Always download your apps from the Google Play Store.

According to a report, the Play Store’s Play Protect security feature protects Android users from the Chameleon malware.

In case you get apps elsewhere, Chameleon typically conceals itself as a harmless Chrome browser. This poser includes “com.busy.lady” in their package when inspected closely.

If you can’t get rid of that, you may need to reset your phone completely to restore the factory apps that came with your device. You may use antivirus apps and see if they can work on this elusive malware.

LATEST NEWS

img_v3_02b3_5f8d04b4-729b-4d1a-ba30-6374d28ee9hu
Android 15 comes with better Doze mode, improving battery life by up to 3 hours
The new Doze mode of Android 15 may extend daily standby times of smartphones, tablets, and compatible...
Read More
img_v3_02b3_9432b4fc-0273-44ed-98ee-84868a1fd4hu
Infinix NOTE 40 5G Review: Ultra-fast gaming, with a large storage, all for under Php 13k!
Infinix has carved a niche for itself by offering impressive features at budget-friendly prices. With...
Read More
img_v3_02b3_f0c487fe-6c02-4ebb-bdd5-ec778fd4b5hu
Score the biggest discounts at the Smart Summer Sale 
Smart Communications, Inc. (Smart) is holding its biggest device sale, offering huge discounts and affordable...
Read More

Your compare list

Compare
REMOVE ALL
COMPARE
0