Trickbot Targeting US Banks

July 23, 2017

This tricky trojan makes it very hard to spot that anything malicous is happening. The coder of the malware is very creative by using special javasript injection in order to perform a man in the middle attack and stealing banking credentials. On a positive note, variants of the malware have been around since mid-2016 and there should be good antivirus protection. However, like we've seen in the past, authors usually change the malware to get past antivirus. So, 100% protection isn't garanteed.


User training is key. Don't click on links in email from you bank. Instead, type the url for you bank into the address bar.