logo

New Android Trojan “FvncBot” Amplifies Mobile Banking Threats

ID: ad7f2a9c-8a92-5817-9c70-00e9299c2e6c

STIX ID: report--ad7f2a9c-8a92-5817-9c70-00e9299c2e6c

Feed Name: Zimperium Blog

Threat Score
70/100

Date Published: 2025-12-15

Date Updated: 2026-05-01

...
...

FvncBot is a recently uncovered Android banking trojan targeting mobile banking users (reported in Poland) that leverages accessibility APIs and VNC functionality to capture keystrokes, stream device screens, and inject fraudulent transactions from within legitimate banking apps, allowing it to bypass standard protections and evade detection; the report recommends stricter permissions, careful app sourcing, and real-time behavior monitoring to mitigate the threat.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.