Hackers observed injecting malicious code into legitimate banking apps



  • Group-IB links poisoned mobile banking apps to GoldFactory
  • Attackers decompile legitimate applications, add Trojans/backdoors, and spread them via phishing lures and fake sites.
  • Advanced malware families allow complete control of devices, exposing tens of thousands of people to banking fraud

Hackers are tricking people into downloading poisoned mobile banking apps, stealing their login credentials, monitoring their activity and, in many cases, enabling financial fraud.

This is according to cybersecurity researchers Group-IB who, in a recent report, said the group is most likely GoldFactory, known for stealing facial recognition data and targeting businesses and consumers in the Asia-Pacific region.



Leave a Comment

Your email address will not be published. Required fields are marked *