logo

Anatsa Banking Trojan Continues to Target Android Users

ID: e9c2c2bc-eedc-53b9-a7e2-108dcfde0e8f

STIX ID: report--e9c2c2bc-eedc-53b9-a7e2-108dcfde0e8f

Feed Name: Zimperium Blog

Threat Score
70/100

Date Published: 2026-05-21

Date Updated: 2026-05-23

...
...

A recent campaign using the Anatsa banking trojan targets mobile banking users by distributing malicious apps that perform overlay attacks to capture credentials and intercept sensitive input, enabling attackers to initiate fraudulent transactions from compromised devices. The report warns that Anatsa operates within trusted app environments to evade detection and recommends strict app controls, minimal permissions, and continuous behavior-based monitoring as mitigations.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.