More than 300,000 Android Users Downloaded Banking Trojans

November 30, 2021

According to ThreatFabirc researchers, over 300,000 Android users have downloaded multiple banking Trojans.

These banking Trojans, fitness monitors and cryptocurrency apps disguised as QR code readers steal users “passwords. These Trojans include Anatsa, which was installed by over 200,000 Android users, Alien, which was installed by 95,000 Android users, Hydra and Ermac, which together had more than 15,000 downloads. It is important to note that these malware families are hidden and only take effect once an app is installed, which allows them to bypass Play Store detection.

In the study of the four malware families, Anatsa is considered the most productive and described as an “advanced” banking trojan.

Anatsa is able to steal usernames and passwords, use access logs to capture everything that appears on a user’s screen, and record all the information that is entered on the phone. Applications that embed the malware include QR code scanners, PDF scanners, and cryptocurrency apps.

Alien malware, another banking trojan, can steal two-factor authentication. Apps that embed this malware include a gym app. Hydra and Ermac have both been linked to Brunhilda, a cybercriminal group that specializes in infecting Android devices with banking malware.

For more information read the original story in ZDNet.

Top Stories

Related Articles

May 29, 2024 Five Ontario school boards along with two private schools have joined lawsuits that claim more...

May 22, 2024 On the day OpenAI unveiled GPT-4o, ChatGPT's mobile app saw a staggering 22% spike more...

May 16, 2024 After a recent iOS update, a number of iPhone users have found themselves facing more...

May 5, 2024 Microsoft has identified a serious vulnerability in Android apps that could allow malicious software more...

Jim Love

Jim is and author and podcast host with over 40 years in technology.

Share:
Facebook
Twitter
LinkedIn