Security experts at CSIS in Denmark have discovered a new piece of banking malware, dubbed Dyreza, which implements browser hooking to defeat SSL. The Trojan is targeting Bank of America, Citibank, Natwest, RBS and Ulsterbank. The attack vector is represented by malicious emails that look like legitimate messages sent by the banks. Researchers have located two Command & Control servers, one of them includes a money mule panel for several accounts in Latvia. It is still unclear if the criminal gang behind the malware is selling it as a Crime as a Service or if the malware was sold as an independent product.”]
Source: http://securityaffairs.co/wordpress/25815/cyber-crime/dyreza-banking-trojan.html

