Threats Tagged 'banking-trojan'
View all threats tagged with 'banking-trojan'. Filter and sort to focus on specific types of threats.
Stop chasing alerts. Route them.
Start free, then upgrade once to turn Radar into an automated delivery engine for your security stack.
Custom feeds / Automations: email, Slack, webhooks, SIEM/MISP / API access (baseline limits)
API access activates after upgrading in Console -> Billing.
Check if your credentials are on the dark web
Instant breach scanning across billions of leaked records. Free tier available.
Filter Threats
Narrow down the results by type, severity, or affected countries
Threats Tagged 'banking-trojan'
Click on any threat for detailed analysis and mitigation recommendations
Eternidade Stealer is a banking Trojan distributed via WhatsApp hijacking and social engineering. It uses a Python-based WhatsApp worm to propagate malicious attachments and an MSI installer that deploys a Delphi-based banking Trojan. The campaign aims to steal banking credentials and conduct fraud. Exploitation does not require prior authentication but relies on user interaction to open malicious attachments. The malware targets Windows systems through MSI installers. The medium severity rating reflects moderate impact and exploitation complexity. European organizations with significant WhatsApp usage and Windows environments are at risk, especially financial institutions. Mitigations include user awareness training, restricting MSI execution, and monitoring WhatsApp traffic for suspicious activity. Countries with high WhatsApp penetration and financial sector importance, such as Germany, France, Italy, Spain, and the UK, are most likely affected. The threat poses a medium risk due to its reliance on social engineering and targeted banking fraud objectives. Join the discussion | Reddit InfoSec News | 11/20/2025, 12:05:07 UTC Added: 11/20/2025, 12:08:04 UTC |
New Android Banking Trojan “Klopatra” Uses Hidden VNC to Control Infected Smartphones Source: https://thehackernews.com/2025/10/new-android-banking-trojan-klopatra.html Join the discussion | Reddit InfoSec News | 10/01/2025, 11:52:19 UTC Added: 10/01/2025, 11:55:01 UTC |
Klopatra: exposing a new Android banking trojan operation with roots in Turkey | Cleafy LABS Source: https://www.cleafy.com/cleafy-labs/klopatra-exposing-a-new-android-banking-trojan-operation-with-roots-in-turkey Join the discussion | Reddit NetSec | 09/30/2025, 09:11:39 UTC Added: 09/30/2025, 09:15:12 UTC |
Android Droppers Now Deliver SMS Stealers and Spyware, Not Just Banking Trojans Source: https://thehackernews.com/2025/09/android-droppers-now-deliver-sms.html Join the discussion | Reddit InfoSec News | 09/01/2025, 19:53:47 UTC Added: 09/01/2025, 20:02:41 UTC |
Malicious apps with +19M installs removed from Google Play because spreading Anatsa banking trojan and other malware Source: https://securityaffairs.com/181528/malware/malicious-apps-with-19m-installs-removed-from-google-play-because-spreading-anatsa-banking-trojan-and-other-malware.html Join the discussion | Reddit InfoSec News | 08/25/2025, 21:00:34 UTC Added: 08/25/2025, 21:02:41 UTC |
ERMAC V3.0 Banking Trojan Source Code Leak Exposes Full Malware Infrastructure Source: https://thehackernews.com/2025/08/ermac-v30-banking-trojan-source-code.html Join the discussion | Reddit InfoSec News | 08/16/2025, 12:47:34 UTC Added: 08/16/2025, 13:02:44 UTC |
Coyote Banking Trojan Becomes First to Exploit Microsoft UI Automation in Active Attacks on Banks and Crypto Platforms Source: https://hackread.com/coyote-trojan-use-microsoft-ui-automation-bank-attacks/ Join the discussion | Reddit InfoSec News | 07/22/2025, 21:51:57 UTC Added: 07/22/2025, 22:08:28 UTC |
Showing 1 to 7 of 7 results