Welcome to our

Cyber Security News Aggregator

.

Cyber Tzar

provide a

cyber security risk management

platform; including automated penetration tests and risk assesments culminating in a "cyber risk score" out of 1,000, just like a credit score.

Mobile attackers target banking apps with trojan malware

published on 2025-07-10 14:35:29 UTC by Millie Marshall Loughran
Content:

Zimperium has revealed new zLabs research, detailing an advanced evolution of the GodFather Android banking trojan, using on-device virtualisation to steal credentials from banking and crypto apps.

The trojan technique allows attackers to run the real app inside a malicious sandbox, capture every tap and credential in real time and bypass traditional overlay-based defences.

Mobile-attackers

These attackers are able to deceive users into using what appears to be the ‘genuine app’ making visual detection impossible.

Zimperium has reported that mobile attackers can harvest usernames, passwords, device PINs and even lock-screen credentials.

The company has articulated that despite the latest wave of mobile attacks focusing on a dozen Turkish financial institutions, any sector that relies on mobile apps i.e., finance, retail, healthcare, government – face identical risks.

GodFather reportedly layers ZIP-format tampering, accessibility abuse and Xposed-based hooking to blind static scanners and root-detection checks.

“A mobile-first attack strategy”

Fernando Ortega, Senior Security Researcher, Zimperium said: “Mobile attackers are moving beyond simple overlays; virtualisation gives them unrestricted, live access inside trusted apps.

“Enterprises need on-device, behaviour-based detection and runtime app protection to stay ahead of this shift toward a mobile-first attack strategy.”

Article: Mobile attackers target banking apps with trojan malware - published 4 months ago.

https://securityjournaluk.com/mobile-attackers-banking-apps-trojan-malware/   
Published: 2025 07 10 14:35:29
Received: 2025 07 15 10:25:06
Feed: Security Journal UK
Source: Security Journal UK
Category: Security
Topic: Security
Views: 13

Custom HTML Block

Click to Open Code Editor