BRATA Android Trojan Returns with Fury
ID: 2edb1f45-a705-592e-be5a-e8dca80ae4fc
STIX ID: report--2edb1f45-a705-592e-be5a-e8dca80ae4fc
Feed Name: Zimperium Blog
Threat Score
BRATA, an Android remote access trojan originally observed in Brazil in 2019, has resurfaced with global targeting and new features: it spreads via phishing SMS and sideloaded apps, gains device admin privileges to capture MFA and banking inputs, conducts fraudulent wire transfers, then forces a factory reset to cover tracks; the report provides IoCs (five file hashes) and mitigation advice including password changes and full device reinstallation.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
