Payza Users At Risk From New Citadel Strain

A new iteration of the Citadel financial malware has been reported to be targeting Payza online payment users, reports PCWorld. The malware is passed through a local in-browser attack that takes users’ credentials. Payza services are similar to PayPal, except they have a large concentration in emerging markets. The new Citadel variant was discovered by Trusteer researchers.

    Get the Full Story

    Complete the form to unlock this article and enjoy unlimited free access to all PYMNTS content — no additional logins required.

    yesSubscribe to our daily newsletter, PYMNTS Today.

    By completing this form, you agree to receive marketing communications from PYMNTS and to the sharing of your information with our sponsor, if applicable, in accordance with our Privacy Policy and Terms and Conditions.

    A Trusteer researcher, Etay Maor, reported, “The Payza transaction PIN is used every time a user wants to send funds, add funds, withdraw funds or make a payment. By obtaining the victim’s email, password and PIN number, a cybercriminal can take over the account and commit fraudulent transactions.”

    Researchers also said there are increased security concerns in regards to using online financial services in public areas in developing countries. Users should not be using public computers in Internet cafes or other areas with poor online security standards.

    Read the full story here.