
A new type of Citadela financial malware is targeting users of the Payza online payment platform by launching local in-browser attacks to steal their credentials, according to researchers from Trusteer, an Israel-based web access services provider.
The new Citadel variant discovered by Trusteer researchers contains Man-in-the-Browser (MitB) code which alters the form fields users are asked to fill in on Payza's log-in page. More specifically, the code adds an additional PIN (personal identification number) field to the authentication form.
