Let’s dig deeper: dissecting the new Android Trojan GoldDigger with Group-IB Fraud Matrix
ID: 00f9410e-dd78-5f6f-a1b6-0308bfac02ea
STIX ID: report--00f9410e-dd78-5f6f-a1b6-0308bfac02ea
Feed Name: Group-IB Blog
Threat Score
**GoldDigger** is an active Android banking Trojan (since June 2023) targeting financial organizations in Vietnam that disguises itself as legitimate apps, abuses Android Accessibility Service to harvest credentials, intercept SMS and perform remote actions, and uses Virbox Protector to hinder static/dynamic analysis; the report covers distribution (fake Google Play/corporate sites, likely smishing), TTPs, mitigation advice, and IOCs for defenders.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
