In brief
The Trojan steals images from phones, likely to extract seed phrases.
It is distributed through App Store, Google Play, and third-party sites.
Kaspersky has linked it to the prior SparkCat spyware…
Android banking trojan Crocodilus has launched new campaigns targeting crypto users and banking customers across Europe and South America.First detected in March 2025, early Crocodilus samples were largely limited to…
Key Points:Crocodilus Trojan now targets cryptocurrency wallets in addition to bank users.Originated in Turkey, it now affects Poland, Spain, and Argentina.Spreads via Facebook ads disguised as browser updates, posing increased…
Key Takeaways:Procolored’s official driver downloads contained XRedRAT (a remote access trojan) and SnipVex (a Bitcoin clipboard hijacker).
The malware, linked from Procolored’s own support site, swapped copied Bitcoin addresses to redirect…
