Banking Trojans Manic, Grandoreiro, ToxicPanda 2.0 in the Spotlight

Banking Trojans Manic, Grandoreiro, ToxicPanda 2.0 in the Spotlight
ThreatFabric, Acronis, and Zimperium reported new activity from banking trojans including Manic, Grandoreiro, and ToxicPanda 2.0, all designed to steal credentials, siphon data, and take control of infected devices. The campaigns are targeting banks, fintech services, and users across Ukraine, Latin America, Europe, and multiple other countries, with improved evasion and delivery methods.#Manic #Grandoreiro #ToxicPanda #ThreatFabric #Acronis #Zimperium

Keypoints

  • Manic combines banking trojan and spyware features on Android.
  • Manic targets Ukraine, Russia, Europe, and crypto and fintech services.
  • Grandoreiro remains active and is heavily targeting Mexico and other regions.
  • ToxicPanda 2.0 now supports 167 commands and nearly 350 financial apps.
  • Attackers are using DLL sideloading, Android ADB abuse, and AWS-hosted buckets.

Read More: https://www.securityweek.com/banking-trojans-manic-grandoreiro-toxicpanda-2-0-in-the-spotlight/