ThreatFabric, Acronis, and Zimperium reported new activity from banking trojans including Manic, Grandoreiro, and ToxicPanda 2.0, all designed to steal credentials, siphon data, and take control of infected devices. The campaigns are targeting banks, fintech services, and users across Ukraine, Latin America, Europe, and multiple other countries, with improved evasion and delivery methods.#Manic #Grandoreiro #ToxicPanda #ThreatFabric #Acronis #Zimperium
Keypoints
- Manic combines banking trojan and spyware features on Android.
- Manic targets Ukraine, Russia, Europe, and crypto and fintech services.
- Grandoreiro remains active and is heavily targeting Mexico and other regions.
- ToxicPanda 2.0 now supports 167 commands and nearly 350 financial apps.
- Attackers are using DLL sideloading, Android ADB abuse, and AWS-hosted buckets.
Read More: https://www.securityweek.com/banking-trojans-manic-grandoreiro-toxicpanda-2-0-in-the-spotlight/