logo

Extended IOCs for TaxiSpy Android Banking Malware

ID: 575f29ef-2041-5f21-9728-c3df759fa4f8

STIX ID: report--575f29ef-2041-5f21-9728-c3df759fa4f8

Feed Name: Zimperium Blog

Threat Score
75/100

Date Published: 2026-03-09

Date Updated: 2026-05-01

...
...

Recent research describes TaxiSpy RAT, an Android banking-focused malware campaign that combines banking-trojan features with full remote-access spyware capabilities (SMS/OTP interception, Accessibility Service abuse, credential harvesting, remote commands). Analysis uncovered numerous additional samples indicating active variant generation; Zimperium reports on-device behavioral detections and publishes IOCs for mitigation.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.