Hackers Hit 831 Banks and Financial Institutions Worldwide As Dangerous Malware Deployed in Dozens of Android Apps: Security Firm
Security researchers say a mobile banking trojan first spotted in 2020 is now targeting financial institutions across the globe.
In a new report, the cloud-native cybersecurity platform Zscaler says hackers are aggressively expanding the scope and streamlining payload of the Android banking trojan Anatsa.
Anatsa came to life five years ago after a slew of attacks that targeted financial app users and over 650 financial institutions in the US, Europe and the UK. The malware is capable of hijacking credentials, monitoring keystrokes and facilitating fraudulent transactions.
The cybersecurity firm says that the malware is now masquerading as a document reader in the Google Play Store to deliver its malicious payload.
“Once installed, Anatsa silently downloads a malicious payload disguised as an update from its command-and-control (C2) server. This approach allows Anatsa to bypass Google Play Store detection mechanisms and successfully infect devices.”
Zscaler says the malware steals credentials by displaying fake banking login pages, tailored to the financial apps detected on a user’s device.
Through this process, the firm says Anatsa was able to increase its target to 831 financial institutions worldwide, including 150 new banking and cryptocurrency platforms. The malware has also been linked to 77 malicious apps with over 19 million installs.
“Anatsa continues to evolve and improve with anti-analysis techniques to better evade detection… Our research demonstrates the techniques that Anatsa and other Android malware families leverage for distribution through the official Google Play Store.
Android users should always verify the permissions that applications request, and ensure that they align with the intended functionality of the application.”
Generated Image: Midjourney
Disclaimer: The content of this article solely reflects the author's opinion and does not represent the platform in any capacity. This article is not intended to serve as a reference for making investment decisions.
You may also like
Decoding VitaDAO: A Paradigm Revolution in Decentralized Science

Mars Morning News | ETH returns to $3,000, extreme fear sentiment has passed
The Federal Reserve's Beige Book shows little change in U.S. economic activity, with increasing divergence in the consumer market. JPMorgan predicts a Fed rate cut in December. Nasdaq has applied to increase the position limit for BlackRock's Bitcoin ETF options. ETH has returned to $3,000, signaling a recovery in market sentiment. Hyperliquid has sparked controversy due to a token symbol change. Binance faces a $1 billion terrorism-related lawsuit. Securitize has received EU approval to operate a tokenization trading system. The Tether CEO responded to S&P's credit rating downgrade. Large Bitcoin holders are increasing deposits to exchanges. Summary generated by Mars AI. The accuracy and completeness of this summary are still being iteratively improved by the Mars AI model.

The central bank sets a major tone on stablecoins for the first time—where will the market go next?
The People's Bank of China held a meeting to crack down on virtual currency trading and speculation, clearly defining stablecoins as a form of virtual currency with risks of illegal financial activities, and emphasized the continued prohibition of all virtual currency-related businesses.

