Close Menu
Indo Guard OnlineIndo Guard Online
  • Home
  • Cyber Security
  • Risk Management
  • Travel
  • Security News
  • Tech
  • More
    • Data Privacy
    • Data Protection
    • Global Security
What's Hot

New Httpbot Botnet Launches 200+ Precision Ddos Attacks to Game and Technology Sectors

May 16, 2025

10 best practices for effective data protection

May 16, 2025

Rat Remcos delivered via LNK files and mshta in attacks based on PowerShell

May 16, 2025
Facebook X (Twitter) Instagram
Facebook X (Twitter) Instagram YouTube
Indo Guard OnlineIndo Guard Online
Subscribe
  • Home
  • Cyber Security
  • Risk Management
  • Travel
  • Security News
  • Tech
  • More
    • Data Privacy
    • Data Protection
    • Global Security
Indo Guard OnlineIndo Guard Online
Home » New Android Trojan Crocodilus abuses Availability for theft of bank and crying credentials
Global Security

New Android Trojan Crocodilus abuses Availability for theft of bank and crying credentials

AdminBy AdminMarch 29, 2025No Comments3 Mins Read
Share
Facebook Twitter LinkedIn Pinterest Email Copy Link


March 29, 2025Red LakshmananIntelligence threats / mobile security

Cybersecurity researchers have discovered a new malicious Android Banking software called Crocodile This is primarily intended for targeting users in Spain and Turkey.

“Crocodilus goes on stage not as a simple clone, but as a full threat from the beginning, equipped with modern – Note.

As of other Bank trojans Of -a sort of malicious software designed to facilitate devices’ absorption (Hundred) and eventually conduct fake operations. Analysis of the source code and reports of debugs shows that the author of malware is Turkish.

Cybersecurity

Crocodilus Artifacts, analyzed by the Dutch Masquerade Mobile Safety Company as Google Chrome (Package Title: “Quizzical.washbowl.Calamity”), which acts as a dropper capable bypassing Android 13+ restrictions.

After installing and launching the app requires permission for Android availability services, after which contact is set with a remote server for additional instructions, a list of financial applications that will be oriented, and HTML lining, which will be used to steal the credentials.

Crocodilus is also capable of focusing on cryptocurrency cryptocurrencies, which, instead of serving a fake entry page to capture the entry information, shows a warning message calling the victims backup of its seed phrases for 12, and also risk losing access to your wallets.

Mobile security

This trick of social engineering is nothing but a threat to direct the victims to go to their seed phrases, which are then collected by abuse of availability, allowing them to get full control over the wallets and drain assets.

“It works constantly, monitoring applications launching and displaying copies of accounting,” Opherfabric said. “Malicious software tracks all affordability events and fixes all the elements that are displayed on the screen.”

This allows the malicious software to log in all the activities conducted on the screen, as well as run the Google Authenticor Content.

Cybersecurity

Another feature of Crocodilus is its ability to hide the malicious action on the device, showing the black screen overlay, as well as muffling the sounds, which guarantees that they go unnoticed by the victims.

Some important features supported by malicious software are below –

  • Run the specified app
  • Independently mutually from the device
  • Place the push notification
  • Send SMS -messages to all/select contacts
  • Get contacts lists
  • Get a list of installed applications
  • Get SMS messages
  • Ask the Administrator’s Administrator
  • Enable the black lining
  • Update the C2 server settings
  • Enable/disable sound
  • Enable/Disable Keyboard
  • Make yourself a default SMS manager

“The occurrence of a Trojan mobile banking Crocodilus means a significant escalation at the level of sophistication and threat that presents modern malicious software,” said OPHERFABRIC.

“Thanks to the advanced device capabilities, remote controls, and the deployment of black attacks from the earliest iterations, Crocodilus demonstrates maturity in recent threats.”

Development comes as a point force disclosed Phishing details Grandoreiro Bank Trojan, focused on Windows users in Mexico, Argentina and Spain with the help of a embarrassed Visual Basic scenario.

Found this article interesting? Keep track of us further Youter  and LinkedIn To read more exclusive content we publish.





Source link

Share. Facebook Twitter Pinterest LinkedIn Tumblr Email Copy Link
Admin
  • Website

Related Posts

New Httpbot Botnet Launches 200+ Precision Ddos Attacks to Game and Technology Sectors

May 16, 2025

10 best practices for effective data protection

May 16, 2025

Rat Remcos delivered via LNK files and mshta in attacks based on PowerShell

May 16, 2025

Researchers put up new flaws of the Intel processor that allows for memory leaks and attacks Spectre V2

May 16, 2025

Learn the smarter way to protect modern applications

May 16, 2025

Meta to train AI on EU users since May 27 without consent; NOIB is threatened by lawsuits

May 15, 2025
Add A Comment
Leave A Reply Cancel Reply

Loading poll ...
Coming Soon
Do You Like Our Website
: {{ tsp_total }}

Subscribe to Updates

Get the latest security news from Indoguardonline.com

Latest Posts

New Httpbot Botnet Launches 200+ Precision Ddos Attacks to Game and Technology Sectors

May 16, 2025

10 best practices for effective data protection

May 16, 2025

Rat Remcos delivered via LNK files and mshta in attacks based on PowerShell

May 16, 2025

Researchers put up new flaws of the Intel processor that allows for memory leaks and attacks Spectre V2

May 16, 2025

Learn the smarter way to protect modern applications

May 16, 2025

Meta to train AI on EU users since May 27 without consent; NOIB is threatened by lawsuits

May 15, 2025

Coinbase agents are bribed, data ~ 1% of users were traced; Attempted extortion of $ 20 million will not succeed

May 15, 2025

NPM malicious package uses Unicode Steganography, Google Calendar as C2 Chroper

May 15, 2025
About Us
About Us

Provide a constantly updating feed of the latest security news and developments specific to Indonesia.

Facebook X (Twitter) Pinterest YouTube WhatsApp
Our Picks

New Httpbot Botnet Launches 200+ Precision Ddos Attacks to Game and Technology Sectors

May 16, 2025

10 best practices for effective data protection

May 16, 2025

Rat Remcos delivered via LNK files and mshta in attacks based on PowerShell

May 16, 2025
Most Popular

In Indonesia, crippling immigration ransomware breach sparks privacy crisis

July 6, 2024

Why Indonesia’s Data Breach Crisis Calls for Better Security

July 6, 2024

Indonesia’s plan to integrate 27,000 govt apps in one platform welcomed but data security concerns linger

July 6, 2024
© 2025 indoguardonline.com
  • Home
  • About us
  • Contact us
  • Privacy Policy

Type above and press Enter to search. Press Esc to cancel.