CYBERSECURITYTRACKER
TRACKING4,379 stories824 vuln stories
Permanent story citation

ToxicPanda 2.0 and GoldDigger Expand Android Banking Attacks with On-Device Fraud

The story is preserved as cited. Later corrections remain visibly typed and adjacent to the original snapshot.

← newsStory 4762

As cited

Citation snapshot as of .

threat intel

ToxicPanda 2.0 and GoldDigger Expand Android Banking Attacks with On-Device Fraud

Cybersecurity researchers identified an updated version of ToxicPanda (TgToxic), an Android malware that now supports 167 remote commands and targets over 140 banking and cryptocurrency applications. The new variant expands the malware's global reach and includes a PIN harvesting workflow for on-device fraud.

Why it matters: Mobile banking users and financial institutions face increased risk from enhanced Android malware that can execute numerous remote commands and steal authentication credentials from legitimate finance and crypto apps.

Source published
First seen by Cybersecurity Tracker

Source attribution