A Network of Harm: Gigabud Threat and Its Associates
ID: 8a0b3d81-0c45-54a9-aa32-7a113832cdde
STIX ID: report--8a0b3d81-0c45-54a9-aa32-7a113832cdde
Feed Name: Zimperium Blog
Threat Score
Executive Summary: Researchers link Gigabud (banking trojan) and Spynote (Android RAT) to a coordinated campaign that uses shared domains and distribution infrastructure; the operation used a Virbox packer, 11 C2 servers, 79 phishing websites impersonating reputable brands, and targeted over 50 financial and crypto mobile apps, enabling credential theft and potential exfiltration of sensitive corporate and consumer data.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
