Flubot vs. Zimperium
ID: 378880d0-946f-50ec-a4d6-56bfe5d241ab
STIX ID: report--378880d0-946f-50ec-a4d6-56bfe5d241ab
Feed Name: Zimperium Blog
Zimperium analyzes the Flubot Android banking and credential-stealing malware family — distributed via SMS phishing links to side-loaded APKs — describing its use of Accessibility Services to gain broad permissions, SMS and contact theft, overlay attacks to harvest credentials and credit card details, a DGA-based C2 to evade blocking, and its effectiveness across hundreds of variants; the report includes detection results, mitigation advice (factory reset for infected devices), and recommendations for protective controls.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
