logo

Malicious APKs Drain Bank Accounts

ID: 7f8891ef-5d32-5ef3-b583-369fb129cd59

STIX ID: report--7f8891ef-5d32-5ef3-b583-369fb129cd59

Feed Name: KnowBe4 Blog

Threat Score
70/100

Date Published: 2024-01-16

Date Updated: 2026-04-28

Author: Stu Sjouwerman

...
...

Palo Alto Networks Unit 42 reports a targeted phishing campaign in which threat actors pose as law enforcement to convince Chinese users to install malicious Android APKs. The apps block incoming messages and calls to prevent fraud alerts, present fake legal case documents to build trust, and prompt victims to select their bank and enter sensitive personal and payment-card information; attackers then use this data and next-stage payloads to drain bank accounts.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.