BTCC / BTCC Square / Global Cryptocurrency /
New Trojan Wave Targets Crypto Wallets and Banking Apps

New Trojan Wave Targets Crypto Wallets and Banking Apps

Global Cryptocurrency
Release Time:
2026-05-04 03:05:02
0
BTCCSquare news:

Zimperium's zLabs team has identified a surge in sophisticated trojans—RecruitRat, SaferRat, Astrinox, and Massiv—targeting Android users managing cryptocurrencies. These malware families operate through distinct command-and-control networks, hijacking login credentials, intercepting financial transactions, and exfiltrating sensitive data in real time.

The trojans deploy fake overlays mimicking legitimate crypto and banking apps, creating what researchers describe as "a highly convincing, deceptive facade." By exploiting Accessibility Services, the malware activates counterfeit login screens precisely when victims launch financial applications, capturing passwords, one-time passcodes, and even live screen feeds.

SaferRat lures victims through fake premium streaming service offers, while RecruitRat disguises itself within job application processes. The malware demonstrates alarming capabilities—disabling uninstall attempts, hiding app icons, and persistently monitoring device activity.

Articles on this site are sourced from public networks or curated by AI for informational purposes only and do not represent BTCC’s views. Original rights belong to the respective authors. For copyright concerns, please contact [email protected]. BTCC assumes no liability for the accuracy, timeliness, or completeness of this information, and disclaims all liability arising from reliance on such content. This content is for reference only and should not be taken as investment, legal, or commercial advice.

|Square

Get the BTCC app to start your crypto journey

Get started today Scan to join our 100M+ users