Close Menu
  • Latest News
    • Market
    • Altcoins
    • Legal and Regulatory
  • Tech
    • Blockchain
    • Security and Privacy
  • Web 3
    • Web3 News
    • NFTs
    • Gaming
  • Learn
    • Education
    • Investments
    • Staking
    • Wallets and Exchanges
  • ICOs
  • Mining
  • Crypto Tools
    • Exchange Tool
  • Shop
What's Hot

Bitcoin miner Core Scientific shifts to AI with 1.5GW data center push

April 28, 2026

South Africa Crypto Draft Triggers 1M Rand Fine Warning From Valr CEO

April 28, 2026

Why moving IP on-chain is right for the entertainment industry

April 28, 2026
Facebook X (Twitter) Instagram
  • Contact
  • Privacy Policy
  • Terms & Conditions
Facebook X (Twitter) Instagram
CryptoPulseDaily.com
  • Latest News
    • Market
    • Altcoins
    • Legal and Regulatory
  • Tech
    • Blockchain
    • Security and Privacy
  • Web 3
    • Web3 News
    • NFTs
    • Gaming
  • Learn
    • Education
    • Investments
    • Staking
    • Wallets and Exchanges
  • ICOs
  • Mining
  • Crypto Tools
    • Exchange Tool
  • Shop
CryptoPulseDaily.com
Home»Security and Privacy»Xenomorph Malware Resurfaces: 30+ US Banks Targeted
Xenomorph Malware Resurfaces: 30+ US Banks Targeted
Security and Privacy

Xenomorph Malware Resurfaces: 30+ US Banks Targeted

September 26, 2023No Comments2 Mins Read
Share
Facebook Twitter LinkedIn Pinterest Email

Xenomorph malware has reemerged in a new distribution campaign, expanding its scope to target over 30 US banks along with various financial institutions worldwide. 

Cybersecurity analysts from ThreatFabric recently uncovered this resurgence, which relies on deceptive phishing webpages posing as a Chrome update to trick victims into downloading malicious APKs.

Xenomorph first came to the attention of experts in February 2022. This malware is known for using overlays to capture personally identifiable information (PII) such as usernames and passwords. Notably, it features a sophisticated automated transfer system (ATS) engine, enabling a wide range of actions and modules, enhancing its adaptability.

The latest campaign has seen a geographical expansion, with thousands of Xenomorph downloads recorded in Spain and the United States, reflecting a broader trend among malware families to target new markets across the Atlantic.

In technical terms, Xenomorph has added new capabilities to its arsenal, including an anti-sleep feature, a “mimic” mode to avoid detection and the ability to simulate touch actions. The malware’s targets include Spain, Portugal, Italy, Canada, Belgium, numerous US financial institutions and cryptocurrency wallets.

Read more on Xenomorph: Hadoken Security Group Upgrades Xenomorph Mobile Malware

Another noteworthy development is the observation of Xenomorph being distributed alongside powerful desktop stealers, raising questions about potential connections between threat actors behind these malware variants, or the possibility that Xenomorph is now being offered as a Malware-as-a-Service (MaaS) for use in conjunction with other malicious software families.

According to an advisory published by ThreatFabric on Monday, this resurgence underscores the persistent efforts of cyber-criminals to maximize their profits.

“Xenomorph, after months of hiatus, is back, and this time with distribution campaigns targeting some regions that have been historically of interest for this family,” reads the technical write-up.

See also  Argentine banks testing JPMorgan’s JPM Coin to speed up settlements: Report

“Xenomorph maintains its status as an extremely dangerous Android Banking malware, featuring a very versatile and powerful ATS engine, with multiple modules already created, with the idea of supporting multiple manufacturer’s devices.”

The ThreatFabric advisory, includes a detailed appendix with crucial information for identifying infections related to the Xenomorph malware.

Editorial image credit: HI_Pictures / Shutterstock.com

Source link

Banks Malware resurfaces Targeted Xenomorph
Share. Facebook Twitter Pinterest LinkedIn Tumblr Email

Related Posts

North Korean Hackers Target Crypto Firms with ClickFix and Zoom Lures

April 28, 2026

US Sanctions Target Cambodian Scam Network Leaders

April 27, 2026

OpenAI’s new image model shows why crypto scams are about to get much worse

April 26, 2026

US Banks Are Calling Senators Directly to Kill the CLARITY Act’s Stablecoin Yield Rule

April 26, 2026
Add A Comment
Leave A Reply Cancel Reply

Top Posts

FDIC Sexism and Strip Club Scandal Stirs Up Crypto

November 15, 2023

US SEC Hiding Secret Howey Memo To Protect Itself

September 8, 2023

Why Did These Bitcoin ETFs Break Volume Records?

February 27, 2024

Subscribe to Updates

Get the latest creative news From Crypto Daily Pulse directly in your Inbox!

Our mission is to develop a community of people who try to make financially sound decisions. The website strives to educate individuals in making wise choices about Crypto, ICOs, Web3, Blockchain and more.

We're social. Connect with us:

Facebook X (Twitter) Instagram Pinterest YouTube
Top Insights

Bitcoin miner Core Scientific shifts to AI with 1.5GW data center push

April 28, 2026

South Africa Crypto Draft Triggers 1M Rand Fine Warning From Valr CEO

April 28, 2026

Why moving IP on-chain is right for the entertainment industry

April 28, 2026
Get Informed

Subscribe to Updates

Get the latest creative news From Crypto Daily Pulse directly in your Inbox!

  • Contact
  • Privacy Policy
  • Terms & Conditions
© 2026 Crypto Pulse Daily - All rights reserved.

Type above and press Enter to search. Press Esc to cancel.

Cleantalk Pixel
  • bitcoinBitcoin(BTC)$76,015.00-2.37%
  • ethereumEthereum(ETH)$2,271.63-1.76%
  • tetherTether(USDT)$1.00-0.01%
  • rippleXRP(XRP)$1.37-2.12%
  • binancecoinBNB(BNB)$620.92-0.77%
  • usd-coinUSDC(USDC)$1.000.00%
  • solanaSolana(SOL)$83.33-2.17%
  • tronTRON(TRX)$0.323643-0.65%
  • Figure HelocFigure Heloc(FIGR_HELOC)$1.031.22%
  • dogecoinDogecoin(DOGE)$0.0984260.19%