GodFather Malware Under the Lens
ID: a26acc56-bdb0-5f25-8b16-662432a13244
STIX ID: report--a26acc56-bdb0-5f25-8b16-662432a13244
Feed Name: Cyble Blog
Threat Score
This report analyzes the Android banking trojan 'GodFather' (apkversion1.1.5.43), documenting its abused permissions, capabilities to steal SMS and credentials, perform USSD-based money transfers, forward calls, remotely control device screens via VNC, and retrieve C2 configuration from a Telegram channel; it provides sample hashes, the C2 Telegram channel, attacker commands, and mitigation guidance.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
