Snowblind is a new Android malware targeting banking information. Discovered by cybersecurity firm Promon, it infiltrates devices through malicious apps that appear legitimate.
The malware exploits the "seccomp" feature in the Linux kernel to bypass Android's security, using accessibility services to monitor screens and steal login information. It can disable biometric and two-factor authentication, increasing the risk of fraud and identity theft.
Snowblind operates quietly in the background, making it hard to detect. It likely spreads outside official app stores through social engineering attacks, tricking less tech-savvy users.