Hook Version 3: The Banking Trojan with The Most Advanced Capabilities
ID: 775d05d5-3ada-5a16-b798-d4581e73daf2
STIX ID: report--775d05d5-3ada-5a16-b798-d4581e73daf2
Feed Name: Zimperium Blog
Threat Score
Zimperium zLabs reports a new Hook Android banking trojan variant that substantially expands its capabilities (now 107 remote commands), adding ransomware-style and phishing overlays, lockscreen bypass, NFC and transparent overlays to capture gestures, and real-time screen streaming; the malware is being distributed at scale via phishing sites and GitHub, includes MITRE ATT&CK mappings and IOCs, and Zimperium’s on-device protections and a takedown reduced its operational reach.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
