'Flokibot' Malware Warning Issued

A new and potentially virulent malware has been identified and named "Flokibot". So far it has attacked and compromised  

Skip to main content
Main Content

'Flokibot' Malware Warning Issued

May 31, 2017

'Flokibot' Malware Warning Issued

A new and potentially virulent malware has been identified and named "Flokibot". So far it has attacked and compromised integrated POS devices and systems in Brazil, but there are reports that merchants in countries as diverse as Australia, Croatia, Paraguay and the United States have also been targeted.

As we have reported previously, malware (malicious software) is created by fraudsters to infect computer systems and perform unwanted actions, such as deleting critical files and stealing sensitive personal and financial data. Malware takes many forms, including viruses, worms, Trojan horses and spyware.

First identified in September 2016, Flokibot is a financial-oriented malware specifically designed to grab credit card data. It also reportedly uses many different technologies to bypass detection and eradication by security tools.

Since Flokibot has the potential to spread over a larger segment of the payments ecosystem, Visa® has published an alert providing technical information, including background on the malware and indicators of compromise (IOC).

Visa also recommends that merchants use the following best practices to reduce the risk of exposure to Flokibot:

  • Teach employees about avoiding phishing scams and how to safely open emails with attachments.
  • Maintain a patch management program. Update all software and hardware as new releases become available to limit the attack surface.
  • Turn on behavioral analysis on anti-malware to search for suspicious behavior.
  • Use a proxy to monitor network traffic.

Additional technical information is available in the Visa alert

All trademarks contained herein are the sole and exclusive property of their respective owners. Any such use of those marks without the express written permission of their owner is prohibited.

Contact Us
About Our
Merchant Services

Get Started Now:

After you have submitted your information, a TSYS representative will contact you within the next 24 hours.
All fields are required to submit form. Your information is private and secure. We do not accept adult businesses