logo

Fake Chrome Updates Hide Android Brokewell Malware Targeting Your Bank

ID: 0b734246-82b7-5076-8b3d-ed9fbdf78b01

STIX ID: report--0b734246-82b7-5076-8b3d-ed9fbdf78b01

Feed Name: HackRead

Threat Score
75/100

Date Published: 2024-04-29

Date Updated: 2026-04-22

Author: Deeba Ahmed

...
...

Brokewell is an Android banking trojan distributed via fake app updates (masquerading as Chrome updates) that performs overlay attacks and uses a loader to bypass Android 13+ accessibility protections; it steals credentials and session cookies, exfiltrates call logs, messages, contacts, and supports remote-control and spyware features. ThreatFabric researchers report Brokewell is under active development and has been observed in campaigns targeting financial services (e.g., Klarna) and national authentication apps, with recommendations to avoid sideloading apps and to install apps only from official stores.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.