logo

Medusa Reborn: Zimperium’s Robust Defense

ID: c221bec5-b918-5652-a77f-9a543109774c

STIX ID: report--c221bec5-b918-5652-a77f-9a543109774c

Feed Name: Zimperium Blog

Threat Score
70/100

Date Published: 2024-07-02

Date Updated: 2026-05-01

...
...

Zimperium summarizes research on a compact variant of the Medusa mobile banking trojan that is actively being distributed (reported via 65 unique malicious apps) and targets users in countries including Turkey, Spain, France, and Italy. The variant incorporates advanced capabilities—keylogging, screen control, SMS read/write, overlay attacks, and remote uninstallation—and is spread through social engineering and fake-update droppers; Zimperium notes its detection products can identify most reported samples and block associated C2 traffic.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.