Tag

#banking malware

6 stories taggedbanking malware.

A browser window showing Chrome and Edge icons merging together, with a banking interface glimpsed in the background and warning alert dialogs cascading across
Threat Intelligence

KREMLIN Toolkit Turns Chrome and Edge Into Brazilian Bank-Robbing Tools

Elastic Security Labs has pulled the lid off REF9334, a Brazilian crew pushing a rogue browser extension that impersonates a dozen local banks.

3 min read
A Mexican bank's branding and interface visible on a compromised computer screen, with a file manager window open showing suspicious executable files disguised
Threat Intelligence

Grandoreiro Banking Malware Is Back, Targeting Mexican Bank Customers

A banking Trojan first spotted in 2016 is still active, still stealing money, and now using a trusted file-management tool as cover to slip past security software on computers in Mexico.

4 min read
Multiple smartphones arranged on a surface with bluetooth and wifi symbols appearing between them, showing data flowing wirelessly from one device to others, Uk
Threat Intelligence

Manic Android malware hops between infected phones to steal Ukrainian banking data

Researchers at ThreatFabric say the spyware, active since February, targets 169 apps and can relay stolen data through nearby infected devices over Wi-Fi Direct or Bluetooth when the internet is unavailable.

4 min read
A business email thread on a computer screen with invoice attachments and cryptocurrency wallet addresses being subtly edited by unseen hands overlaid with malw
Threat Intelligence

Fake invoices and swapped wallet addresses: inside two 2026 attack chains

Gen's latest threat report tracks criminals who hijacked real business email threads to spread banking malware, and a separate crew quietly rewriting crypto wallet addresses as victims copied them.

4 min read
Illustration: a laptop screen showing a generic blurred verification prompt with a checkbox, warm desk lamp light
Threat Intelligence

Fake CAPTCHA Pages Are Stealing From Mexican Bank Customers

Elastic Security Labs is tracking a fraud campaign, dubbed REF6045, that tricks people into pasting a malicious command from a bogus 'prove you're human' page.

3 min read
Illustration: an unbranded Android-
Threat Intelligence

RedWing: The Rent-a-Fraud Kit Turning Android Phones Into Bank Robberies

A new Android malware sold on Telegram lets almost anyone hijack a victim's phone, steal banking logins and grab the codes meant to keep accounts safe.

3 min read
© 2026 Threat Vectr