logo

New TrickMo Variant Expands Mobile Device Takeover Capabilities

ID: 69c7d41b-8e04-5fd8-bb6e-91a641ee9116

STIX ID: report--69c7d41b-8e04-5fd8-bb6e-91a641ee9116

Feed Name: Zimperium Blog

Threat Score
75/100

Date Published: 2026-06-03

Date Updated: 2026-06-04

...
...

A newly identified TrickMo Android malware variant is targeting banking, fintech, cryptocurrency wallet, and authentication apps by abusing accessibility services and remote-control functions to capture credentials, intercept one‑time passcodes, and manipulate app sessions, enabling device takeover and bypass of multi-factor authentication; the campaign highlights a shift toward full-device compromise and the need for behavior-based detection, strict app controls, and continuous mobile threat monitoring.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.