ToxicPanda Banking Trojan Matures Into Enterprise Threat
ID: 6531d7fa-e4c6-5f2c-a106-fa4e4c776f0a
STIX ID: report--6531d7fa-e4c6-5f2c-a106-fa4e4c776f0a
Feed Name: Dark Reading
Threat Score
ToxicPanda 2.0 is an evolved Android banking Trojan that expands targeting from 16 to 349 financial and crypto apps, adds 167 remote commands, uses AWS-hosted buckets for distribution, and leverages Android Accessibility Services and Wireless Debugging/ADB pairing to gain shell-level access and persistent control of devices — creating heightened enterprise risk by exposing authentication devices, passkeys, and corporate resources.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
