Perseus Android Malware Targets Mobile Banking Users via Fake IPTV Apps
ID: cd1aa166-5a12-5b0c-af60-16172c2e21a9
STIX ID: report--cd1aa166-5a12-5b0c-af60-16172c2e21a9
Feed Name: The Cyber Express
Threat Score
Perseus is a stealthy Android malware campaign distributed via sideloaded IPTV apps that abuses Accessibility Services to perform persistence, scan note-taking apps for sensitive data (using a "scan_notes" command), perform keylogging and overlays, and enable near-real-time remote control; it employs anti-analysis checks to evade detection and primarily targets users in regions like Turkey and Italy, presenting significant privacy and financial risk.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
