ToxicPanda Android Malware Can Steal Banking PINs and Gain Shell Access to Phones
ID: 0390a227-9a30-516d-8b21-86901bf869d1
STIX ID: report--0390a227-9a30-516d-8b21-86901bf869d1
Feed Name: cybersecurityNews.com
ToxicPanda 2.0 is an evolved Android banking trojan delivered via malicious APKs that lures users into granting VPN, Accessibility, Developer Options, and Wireless Debugging permissions; it deploys HTML overlays and transparent layers to capture PINs and credentials, automates enabling Wireless Debugging to pair with the local ADB daemon and gain shell-level access for stealthy persistence and permission escalation, includes 167 remote commands and targets over 140 banking/cryptocurrency apps with overlays for 349 institutions, and has previously infected thousands of devices according to Zimperium.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
