logo

GodFather Malware Under the Lens

ID: a26acc56-bdb0-5f25-8b16-662432a13244

STIX ID: report--a26acc56-bdb0-5f25-8b16-662432a13244

Feed Name: Cyble Blog

Threat Score
75/100

Date Published: 2026-07-07

Date Updated: 2026-07-16

...
...

This report analyzes the Android banking trojan 'GodFather' (apkversion1.1.5.43), documenting its abused permissions, capabilities to steal SMS and credentials, perform USSD-based money transfers, forward calls, remotely control device screens via VNC, and retrieve C2 configuration from a Telegram channel; it provides sample hashes, the C2 Telegram channel, attacker commands, and mitigation guidance.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.