Tag Android

New Android Banking Malware ‘ToxicPanda’ Pilfers Funds Through Deceptive Transfers

Nov 05, 2024
Mobile Security / Cyber Attack

A newly discovered Android banking malware, dubbed ToxicPanda, has already compromised over 1,500 devices, enabling cybercriminals to execute fraudulent transactions. According to Cleafy researchers Michele Roviello, Alessandro Strino, and Federico Valentini, “ToxicPanda’s primary aim is to facilitate money transfers from infected devices through account takeover (ATO) techniques, leveraging a method known as on-device fraud (ODF).” The malware is designed to circumvent banking security measures that verify user identity and authenticate transactions, along with behavioral detection strategies used by banks to flag suspicious money transfers. It is believed that ToxicPanda is linked to a Chinese-speaking threat actor and bears notable similarities to another Android malware called TgToxic, which can steal user credentials and deplete crypto wallets. TgToxic was first reported by Trend Micro in early 2023.

New Android Banking Malware ‘ToxicPanda’ Exploits Devices for Fraudulent Transactions November 5, 2024 Mobile Security / Cyber Attack A newly discovered strain of Android banking malware, named ToxicPanda, has reportedly compromised over 1,500 Android devices, enabling cybercriminals to execute unauthorized banking transactions. According to researchers Michele Roviello, Alessandro Strino, and…

Read More

New Android Banking Malware ‘ToxicPanda’ Pilfers Funds Through Deceptive Transfers

Nov 05, 2024
Mobile Security / Cyber Attack

A newly discovered Android banking malware, dubbed ToxicPanda, has already compromised over 1,500 devices, enabling cybercriminals to execute fraudulent transactions. According to Cleafy researchers Michele Roviello, Alessandro Strino, and Federico Valentini, “ToxicPanda’s primary aim is to facilitate money transfers from infected devices through account takeover (ATO) techniques, leveraging a method known as on-device fraud (ODF).” The malware is designed to circumvent banking security measures that verify user identity and authenticate transactions, along with behavioral detection strategies used by banks to flag suspicious money transfers. It is believed that ToxicPanda is linked to a Chinese-speaking threat actor and bears notable similarities to another Android malware called TgToxic, which can steal user credentials and deplete crypto wallets. TgToxic was first reported by Trend Micro in early 2023.

⚡ Weekly Highlights: Scattered Spider Arrests, Car Hacks, macOS Malware, Fortinet RCE, and More

This week in cybersecurity has shed light on critical vulnerabilities and significant criminal activity affecting major organizations. Precision is paramount in this field; minor oversights can cascade into enormous security breaches. In this context, notable incidents underline systemic issues, such as reliance on outdated tools, sluggish risk responses, and a…

Read More⚡ Weekly Highlights: Scattered Spider Arrests, Car Hacks, macOS Malware, Fortinet RCE, and More

DoNot Team Linked to New Tanzeem Android Malware Aimed at Intelligence Gathering


The threat group known as DoNot Team is associated with a new Android malware linked to highly targeted cyber attacks. The malware, identified as Tanzeem (meaning “organization” in Urdu) and its update variant, was discovered by cybersecurity firm Cyfirma in October and December 2024. These applications share nearly identical functionalities, with only slight user interface changes. Cyfirma’s Friday analysis pointed out, “While designed as a chat application, it fails to operate after installation, crashing once the required permissions are granted.” The app’s name indicates a focus on targeting specific individuals or groups both domestically and internationally. DoNot Team, also known as APT-C-35, Origami Elephant, SECTOR02, and Viceroy Tiger, is a hacking group believed to originate from India, notorious for utilizing spear-phishing emails and various Android malware strains in their attacks.

DoNot Team Linked to Emerging Tanzeem Android Malware Targeting Intelligence Gathering January 20, 2025 In a notable development in the cyber threat landscape, the hacking group known as DoNot Team has been associated with a new strain of Android malware. This malware, identified as Tanzeem, which translates to “organization” in…

Read More

DoNot Team Linked to New Tanzeem Android Malware Aimed at Intelligence Gathering


The threat group known as DoNot Team is associated with a new Android malware linked to highly targeted cyber attacks. The malware, identified as Tanzeem (meaning “organization” in Urdu) and its update variant, was discovered by cybersecurity firm Cyfirma in October and December 2024. These applications share nearly identical functionalities, with only slight user interface changes. Cyfirma’s Friday analysis pointed out, “While designed as a chat application, it fails to operate after installation, crashing once the required permissions are granted.” The app’s name indicates a focus on targeting specific individuals or groups both domestically and internationally. DoNot Team, also known as APT-C-35, Origami Elephant, SECTOR02, and Viceroy Tiger, is a hacking group believed to originate from India, notorious for utilizing spear-phishing emails and various Android malware strains in their attacks.

Unless Users Act, Android Will Allow Gemini to Access Third-Party Apps

Google’s Gemini AI Update Raises Privacy Concerns Beginning today, Google has initiated a significant change that allows its Gemini AI engine to interact with third-party applications, including popular services like WhatsApp, regardless of prior user settings designed to restrict such interactions. Users who wish to maintain their initial privacy settings…

Read MoreUnless Users Act, Android Will Allow Gemini to Access Third-Party Apps

New Expert Insights Uncover Greater Issues Following Qantas Cyber Attack

The recent cyber attack on Qantas has sent shockwaves through the security community, highlighting the evolving methods employed by decentralized global hacking groups. Expert analysis has shed light on the agile and organized tactics that characterize these groups, prompting deeper scrutiny into the vulnerabilities that major corporations and their third-party…

Read MoreNew Expert Insights Uncover Greater Issues Following Qantas Cyber Attack

Millions of Affordable Android Devices Transform Home Networks into Crime Hubs

FBI Warns of Widespread Malware Infection in Low-Cost Media Devices Millions of affordable devices catering to media streaming, automotive entertainment, and video projection are reportedly compromised by malware, transforming consumer networks into conduits for distributing malicious software, obscuring unauthorized communications, and executing various illicit operations. This alarming report has been…

Read MoreMillions of Affordable Android Devices Transform Home Networks into Crime Hubs

Google Introduces Advanced Protection for At-Risk Users on Android

In response to the growing threat posed by mercenary spyware and other targeted cyber dangers, major technology firms, including Apple, Google, and Microsoft, have committed significant resources over recent years to fortify the digital security of their most vulnerable users worldwide. Apple’s implementation of Lockdown Mode in 2022 exemplifies a…

Read MoreGoogle Introduces Advanced Protection for At-Risk Users on Android

Google Launches Advanced Protection Mode for High-Risk Android Users

Google Introduces Advanced Protection Mode to Strengthen Android Security In response to escalating threats against mobile devices, Google has announced the introduction of a new security feature designed to bolster Android’s defenses against malware attacks, insecure network vulnerabilities, and unsolicited messaging scams. The Advanced Protection mode, which will be integrated…

Read MoreGoogle Launches Advanced Protection Mode for High-Risk Android Users

Jury Orders NSO to Pay $167 Million for Breaching WhatsApp User Security

WhatsApp Secures $167 Million Verdict Against NSO Group for Cyber Exploitation In a significant legal victory, WhatsApp has been awarded $167 million in punitive damages against Israel’s NSO Group, following serious allegations regarding the exploitation of a software vulnerability that compromised thousands of user devices. The jury’s verdict, delivered on…

Read MoreJury Orders NSO to Pay $167 Million for Breaching WhatsApp User Security