
A sophisticated malware campaign targeting Android users in Indonesia has been identified, involving the cloning of legitimate banking applications. According to security researchers, the threat group known as GoldFactory is actively exploiting the Android Work Profile feature to facilitate the delivery of the Gigabud Trojan. By leveraging this legitimate system feature, attackers can bypass traditional security measures and gain unauthorized access to sensitive user data and financial credentials. Additionally, a separate threat actor identified as Mantax Otax is distributing malicious software through similar deceptive tactics. These campaigns highlight the evolving risks associated with mobile banking and the importance of verifying application sources. Security experts advise users to exercise caution when granting permissions to banking apps and to ensure their devices are updated with the latest security patches to mitigate the risk of exploitation by these malicious actors.
This is a summary. Read the full article at the original source:
Dark ReadingRelated stories
A massive data breach at IDScan.net has resulted in the theft of approximately 153 million driver’s license records. Reports indicate that hackers man…
In this article, the author provides a detailed walkthrough of the Reactor machine, which was featured in the 11th season of the Hack The Box platform…
Cybersecurity researchers have identified a growing trend where threat actors are exploiting Bring Your Own Device (BYOD) policies to infiltrate corpo…



