logo

90+ Malicious Apps Totaling 5.5M Downloads Lurk on Google Play

ID: 76e42f12-39d4-51cf-ae9c-87dcc7395c41

STIX ID: report--76e42f12-39d4-51cf-ae9c-87dcc7395c41

Feed Name: Dark Reading

Threat Score
78/100

Date Published: 2024-05-28

Date Updated: 2026-04-21

Author: Elizabeth Montalbano, Contributing Writer

...
...

Zscaler researchers discovered more than 90 malicious Android apps on Google Play (over 5.5 million installs) used as droppers to distribute the Anatsa (Teabot) banking Trojan and other malware; the threat uses C2-delivered staged payloads, sandbox checks, and overlay/accessibility abuses to steal credentials from 650+ financial apps and is actively targeting users across Europe, the US, UK, South Korea and Singapore, prompting recommendations for zero-trust controls and stricter enterprise mobile app hygiene.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.