Close Menu
  • Latest News
    • Market
    • Altcoins
    • Legal and Regulatory
  • Tech
    • Blockchain
    • Security and Privacy
  • Web 3
    • Web3 News
    • NFTs
    • Gaming
  • Learn
    • Education
    • Investments
    • Staking
    • Wallets and Exchanges
  • ICOs
  • Mining
  • Crypto Tools
    • Exchange Tool
  • Shop
What's Hot

Can ARB’s price absorb 92.65M new tokens without losing its pace?

July 14, 2026

Pakistan crypto regulation faces Islamic law test

July 14, 2026

MEXC Reports 7.1 Billion USDT in SpaceX Futures Volume as Q2 Closes the Gap to Wall Street

July 14, 2026
Facebook X (Twitter) Instagram
  • Contact
  • Privacy Policy
  • Terms & Conditions
Facebook X (Twitter) Instagram
CryptoPulseDaily.com
  • Latest News
    • Market
    • Altcoins
    • Legal and Regulatory
  • Tech
    • Blockchain
    • Security and Privacy
  • Web 3
    • Web3 News
    • NFTs
    • Gaming
  • Learn
    • Education
    • Investments
    • Staking
    • Wallets and Exchanges
  • ICOs
  • Mining
  • Crypto Tools
    • Exchange Tool
  • Shop
CryptoPulseDaily.com
Home»Security and Privacy»Undetected Android Trojan Expands Attack on Iranian Banks
Undetected Android Trojan Expands Attack on Iranian Banks
Security and Privacy

Undetected Android Trojan Expands Attack on Iranian Banks

November 28, 2023No Comments2 Mins Read
Share
Facebook Twitter LinkedIn Pinterest Email

Security researchers have uncovered the continuation and expansion of an Android mobile banking Trojan campaign targeting major Iranian banks. 

Initially discovered in July 2023, the campaign has not only persisted but has also evolved with enhanced capabilities, according to a new report by Zimperium malware analysts Aazim Bill SE Yaswant and Vishnu Pratapagiri.

A prior investigation by the firm identified four clusters of credential-harvesting apps mimicking major Iranian banks, circulating between December 2022 and May 2023. These apps could steal banking login credentials and credit card information, hide app icons to prevent uninstallation and intercept SMS for one-time password (OTP) codes.

Zimperium’s latest findings, published today, include the identification of 245 new app variants associated with the same threat actors. Notably, 28 of these variants remain undetected by industry-standard scanning tools. 

The new iterations extend the campaign’s reach, targeting additional banks and revealing the threat actors’ aspirations to expand further. The malware now also demonstrates an interest in collecting information about various cryptocurrency wallet applications, suggesting potential future targeting.

The second iteration of the malware also introduced unseen capabilities, such as the abuse of accessibility services for overlay attacks, auto-granting of SMS permissions, prevention of uninstallation and data exfiltration methods using GitHub repositories. The research also underscores vendor-specific attacks on Xiaomi and Samsung devices and a potential interest in targeting iOS devices.

Read more on similar threats: SpinOk Trojan Compromises 421 Million Android Devices

Yaswant and Pratapagiri emphasized the importance of runtime visibility and protection for mobile applications.

“It is evident that modern malware is becoming more sophisticated, and targets are expanding, so runtime visibility and protection are crucial for mobile applications,” the researchers explained.

See also  Tokenized Deposits as Alternative to Stablecoins Favored by South Korean Banks in Preparation for CBDCs

The Zimperium research article concludes with an invitation to explore Indicators of Compromise (IOCs) on their GitHub repository, providing a comprehensive list for security practitioners to bolster defenses against this evolving threat.

Source link

Android Attack Banks Expands Iranian Trojan Undetected
Share. Facebook Twitter Pinterest LinkedIn Tumblr Email

Related Posts

Robinhood Chain tokens are reportedly vanishing from wallets causing buyers to lose funds

July 13, 2026

MEXC Expands Ondo Tokenized Stock Lineup With SK Hynix and Four Other Trading Pairs

July 13, 2026

Inside Custodia Bank’s Supreme Court Petition — What This Could Unlock

July 13, 2026

Convicted scammer’s “seized” crypto moves to unknown wallets while in prison as DOJ failed to secure funds

July 13, 2026
Add A Comment
Leave A Reply Cancel Reply

Top Posts

Microsoft identifies malware ‘worm’ that hijacks crypto wallets, spreads through USB drives

June 22, 2026

Hong Kong targets global fintech leadership with new virtual asset strategies

October 23, 2024

2025 Bitcoin Mining Stock Performance: A Clear Market Preference

January 12, 2026

Subscribe to Updates

Get the latest creative news From Crypto Daily Pulse directly in your Inbox!

Our mission is to develop a community of people who try to make financially sound decisions. The website strives to educate individuals in making wise choices about Crypto, ICOs, Web3, Blockchain and more.

We're social. Connect with us:

Facebook X (Twitter) Instagram Pinterest YouTube
Top Insights

Can ARB’s price absorb 92.65M new tokens without losing its pace?

July 14, 2026

Pakistan crypto regulation faces Islamic law test

July 14, 2026

MEXC Reports 7.1 Billion USDT in SpaceX Futures Volume as Q2 Closes the Gap to Wall Street

July 14, 2026
Get Informed

Subscribe to Updates

Get the latest creative news From Crypto Daily Pulse directly in your Inbox!

  • Contact
  • Privacy Policy
  • Terms & Conditions
© 2026 Crypto Pulse Daily - All rights reserved.

Type above and press Enter to search. Press Esc to cancel.

Cleantalk Pixel
  • bitcoinBitcoin(BTC)$63,682.001.77%
  • ethereumEthereum(ETH)$1,832.883.57%
  • tetherTether(USDT)$1.00-0.02%
  • binancecoinBNB(BNB)$575.201.36%
  • usd-coinUSDC(USDC)$1.000.00%
  • rippleXRP(XRP)$1.081.15%
  • solanaSolana(SOL)$76.110.40%
  • tronTRON(TRX)$0.325359-0.36%
  • Figure HelocFigure Heloc(FIGR_HELOC)$1.031.93%
  • HyperliquidHyperliquid(HYPE)$64.660.49%