Categories: Security News

ATMJackpot – New ATM Malware Steal Your Money From ATM using ATM Jackpotting Technique

New ATM Malware called ATMJackpot that is capable of dispensing large amounts of cash from the ATM Machine using ATM Jackpotting method.

Previously discovered ATM Jackptting Malware compromise the ATM by installing the malicious software and sophisticated hardware to pull out the cash.

Based on the Binary, researchers discovered this ATM malware originated from Hong Kong as 28th March 2018.

A few Months before sophisticated ATM skimming called “Shimmers”  targeted chip-based credit and Debit cards to steal your entire card information form POS(Point-of-sale) terminal.

Also, Attackers inject an another ATM Malware called Ploutus.D inject into the ATM machine and performing various Task

This newly Spreading ATM malware has a smaller footprint with a kind of small simple graphical user interface.

a simple graphical user interface

This Malware interface contains hostname along with the service provider information such as cash dispenser, PIN pad, and card reader information.

How Does This ATM Malware Works

This ATM Malware propagates via physical access by an attacker using USB and also spreading via a network by downloading the malware on to already-compromised ATM machines.

Initially, windows class name called ‘WIN’ registered by the ATMJackpot malware that leads to handle all the malware activities.

According to netskope,  After registering a window class, the malware creates the window, populates the options on the window, and initiates the connection with the XFS manager

Later ATMJackpot malware starts it monitoring an operation of the events from different service providers and finally execute commands.

It using  3 Different commands to perform its malicious operation in the targeted ATM

1.Malware reads the data from PIN pad asynchronously using WFSAsyncExecute API

Read data from PIN Pad

2.Malware has the functionality to dispense cash

Dispense cash

3.Malware also has the functionality to eject the card

Eject ATM card

You can Also check the  Advanced ATM Penetration Testing Methods that help prevent the ATM Based Attacks.

Balaji

BALAJI is an Ex-Security Researcher (Threat Research Labs) at Comodo Cybersecurity. Editor-in-Chief & Co-Founder - Cyber Security News & GBHackers On Security.

Recent Posts

Araneida Scanner – Hackers Using Cracked Version Of Acunetix Vulnerability Scanner

Threat Analysts have reported alarming findings about the "Araneida Scanner," a malicious tool allegedly based…

1 day ago

A Dark Web Operation Acquiring KYC Details TO Bypass Identity Verification Systems

A major dark web operation dedicated to circumventing KYC (Know Your Customer) procedures, which involves…

1 day ago

Adobe Warns of ColdFusion Vulnerability Allows Attackers Read arbitrary files

Adobe has issued a critical security update for ColdFusion versions 2023 and 2021 to address…

1 day ago

Beware of New Malicious PyPI packages That Steals Login Details

Two malicious Python packages, Zebo-0.1.0 and Cometlogger-0.1, were recently detected by Fortinet's AI-driven OSS malware…

1 day ago

Brazilian Hacker Arrested Hacking Computers & Selling Data

A Brazilian man, Junior Barros De Oliveira, has been charged with multiple counts of cybercrime…

1 day ago

McDonald’s Delivery App Bug Let Customers Orders For Just $0.01

McDonald's India (West & South) / Hardcastle Restaurants Pvt. Ltd. operates a custom McDelivery web…

1 day ago