logo

A Network of Harm: Gigabud Threat and Its Associates

ID: 8a0b3d81-0c45-54a9-aa32-7a113832cdde

STIX ID: report--8a0b3d81-0c45-54a9-aa32-7a113832cdde

Feed Name: Zimperium Blog

Threat Score
75/100

Date Published: 2024-09-12

Date Updated: 2026-05-01

...
...

Executive Summary: Researchers link Gigabud (banking trojan) and Spynote (Android RAT) to a coordinated campaign that uses shared domains and distribution infrastructure; the operation used a Virbox packer, 11 C2 servers, 79 phishing websites impersonating reputable brands, and targeted over 50 financial and crypto mobile apps, enabling credential theft and potential exfiltration of sensitive corporate and consumer data.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.