90+ Malicious Apps Totaling 5.5M Downloads Lurk on Google Play
ID: 76e42f12-39d4-51cf-ae9c-87dcc7395c41
STIX ID: report--76e42f12-39d4-51cf-ae9c-87dcc7395c41
Feed Name: Dark Reading
Date Published: 2024-05-28
Date Updated: 2026-04-21
Author: Elizabeth Montalbano, Contributing Writer
Zscaler researchers discovered more than 90 malicious Android apps on Google Play (over 5.5 million installs) used as droppers to distribute the Anatsa (Teabot) banking Trojan and other malware; the threat uses C2-delivered staged payloads, sandbox checks, and overlay/accessibility abuses to steal credentials from 650+ financial apps and is actively targeting users across Europe, the US, UK, South Korea and Singapore, prompting recommendations for zero-trust controls and stricter enterprise mobile app hygiene.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
