Close Menu
  • Homepage
  • Local News
  • India
  • World
  • Politics
  • Sports
  • Finance
  • Entertainment
  • Business
  • Technology
  • Health
  • Lifestyle
Facebook X (Twitter) Instagram
  • Contact
  • Privacy Policy
  • Terms & Conditions
  • DMCA
Facebook X (Twitter) Instagram Pinterest
JHB NewsJHB News
  • Local
  • India
  • World
  • Politics
  • Sports
  • Finance
  • Entertainment
Let’s Fight Corruption
JHB NewsJHB News
Home»Technology»Anatsa banking Trojan reappeared through apps on Google Play
Technology

Anatsa banking Trojan reappeared through apps on Google Play

February 20, 2024No Comments2 Mins Read
Facebook Twitter Pinterest LinkedIn Tumblr Email
AH TechDeals 300x150
Share
Facebook Twitter LinkedIn Pinterest Email

The resurgence of the Anatsa banking Trojan has sparked considerations amongst cybersecurity specialists because it targets European monetary establishments, posing a major menace to cellular banking safety. Over the previous 4 months, the Anatsa marketing campaign has exhibited a dynamic evolution, with 5 distinct waves focusing on particular areas, together with Slovakia, Slovenia, and Czechia, along with earlier targets just like the UK, Germany, and Spain.

Fraud detection firm ThreatFabric detected a resurgence of the Anatsa banking Trojan in November 2023

The newest iteration of the Anatsa marketing campaign, detected by ThreatFabric, demonstrates a complicated modus operandi. It employed a number of techniques to infiltrate cellular gadgets and execute malicious actions. Regardless of enhanced detection and safety mechanisms on Google Play, Anatsa droppers have efficiently exploited AccessibilityService. It enabled them to automate the set up of payloads.

One notable facet of the current Anatsa marketing campaign is using manufacturer-specific code focusing on Samsung gadgets. This tailor-made method suggests a strategic adaptation by menace actors to maximise the impression of their malware. Whereas the marketing campaign straight impacted Samsung customers on this section, the specter of related techniques focusing on different machine producers stays a priority.

Anatsa marketing campaign has successfully bypassed AccessibilityService restrictions imposed by Android 13

Moreover, the Anatsa marketing campaign has successfully bypassed restrictions imposed by Android 13, enabling droppers to put in payloads whereas evading detection. This system, coupled with dynamically loaded DEX recordsdata, enhances the malware’s stealth capabilities. It poses challenges for safety engines and will increase the chance of profitable infections.

The potential for machine takeover by a trojan horse poses a extreme menace, with every set up rising the chance of fraudulent exercise and unauthorized entry to delicate data.

Beeping Pc has famous 5 functions which might be linked to the Anatsa marketing campaign. These embrace Telephone Cleaner – File Explorer (com.volabs.androidcleaner), PDF Viewer – File Explorer (com.xolab.fileexplorer), PDF Reader – Viewer & Editor (com.jumbodub.fileexplorerpdfviewer), Telephone Cleaner: File Explorer (com.appiclouds.phonecleaner), and PDF Reader: File Supervisor (com.tragisoap.fileandpdfmanager).

Google has responded to the matter

A Google spokesperson has knowledgeable BeepingComputer that Google Play has eliminated all the 5 apps related to this marketing campaign. He added that Google Play Shield already protects Android gadgets in opposition to recognized variations of this malware. That is on by default on Android gadgets with Google Play Companies.

Anatsa banking trojan payload fetchAnatsa banking trojan payload fetch
Picture: ThreatFabric

Source link

Anatsa apps banking Google play reappeared Trojan
Share. Facebook Twitter Pinterest LinkedIn Tumblr Email

Related Posts

AI models can be used to unmask anonymous social media accounts, new study warns | Technology News

March 10, 2026

Microsoft deepens ties with Anthropic, integrates Claude Cowork agentic AI tool with 365 Copilot | Technology News

March 10, 2026

Samsung Refutes S26 Ultra Privacy Display Complaints

March 10, 2026

Google Play Store Warning Over Battery-Draining Android Apps

March 10, 2026
Add A Comment
Leave A Reply Cancel Reply

Editors Picks

AI models can be used to unmask anonymous social media accounts, new study warns | Technology News

March 10, 2026

Got a low rate? Now consider this.

March 10, 2026

Jose Mourinho hits back after red card in Benfica vs Porto 2-2 draw

March 10, 2026

Princesses Beatrice and Eugenie ‘Set to Freeze Out Sarah Ferguson’

March 10, 2026
Popular Post

API security key to protecting DevSecOps pipelines, Akto raises $4.5M in funding 

Judge Shuts Down ‘RHOA’ Star Phaedra Parks’ Ex-husband’s Plea to End His Probation Early

Former RB fighting for life after drowning incident with kidneys in “great concern” 

Subscribe to Updates

Get the latest news from JHB News about Bangalore, Worlds, Entertainment and more.

JHB News
Facebook X (Twitter) Instagram Pinterest
  • Contact
  • Privacy Policy
  • Terms & Conditions
  • DMCA
© 2026 Jhb.news - All rights reserved.

Type above and press Enter to search. Press Esc to cancel.