logo

Mirax RAT Expands Mobile Banking and Surveillance Threats

ID: 8ced5042-7d5f-569c-a3e5-e8928ae89038

STIX ID: report--8ced5042-7d5f-569c-a3e5-e8928ae89038

Feed Name: Zimperium Blog

Threat Score
70/100

Date Published: 2026-04-24

Date Updated: 2026-05-01

...
...

A newly identified Android remote access trojan called Mirax is actively being distributed through malicious applications and social-engineering lures. The RAT grants attackers full control of infected devices — including screen monitoring, credential harvesting, and remote command execution — and operates inside legitimate apps to bypass security checks, facilitating unauthorized transactions and data exfiltration; the campaign combines financial fraud with surveillance and highlights the need for stricter app controls, minimal permissions, and behavior-based monitoring.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.