CYBERSECURITYTRACKER
TRACKING
Permanent story citation

ToxicPanda 2.0 and GoldDigger Expand Android Banking Attacks with On-Device Fraud

This page keeps the story as Cybersecurity Tracker first published it. If the tracker later corrects it, the correction appears below the original and never replaces it.

Back to newsStory 4762

As cited

Copy frozen at (site build).

threat intel

ToxicPanda 2.0 and GoldDigger Expand Android Banking Attacks with On-Device Fraud

Cybersecurity researchers identified an updated version of ToxicPanda (TgToxic), an Android malware that now supports 167 remote commands and targets over 140 banking and cryptocurrency applications. The new variant expands the malware's global reach and includes a PIN harvesting workflow for on-device fraud.

Why it matters: Mobile banking users and financial institutions face increased risk from enhanced Android malware that can execute numerous remote commands and steal authentication credentials from legitimate finance and crypto apps.

Source published
First seen by Cybersecurity Tracker

Source attribution

Correction

Correction recorded as of .

threat intel

ToxicPanda 2.0 and GoldDigger Expand Android Banking Attacks with On-Device Fraud

Cybersecurity researchers identified an updated version of ToxicPanda (TgToxic), an Android malware that now supports 167 remote commands and targets over 140 banking and cryptocurrency applications. The new variant expands the malware's global reach and includes a PIN harvesting workflow for on-device fraud.

Why it matters: Mobile banking users and financial institutions face increased risk from enhanced Android malware that can execute numerous remote commands and steal authentication credentials from legitimate finance and crypto apps.

VendorsGoogle
Source published
First seen by Cybersecurity Tracker

Source attribution

Glossary