Kaspersky's GReAT team has uncovered BeatBanker, a sophisticated Android Trojan targeting Brazilian users via a phishing site disguised as the Google Play Store. The malware spreads through a fake INSS (Brazilian social security) app and deploys multiple malicious components: an XMRig-based Monero cryptocurrency miner and a
Table of contents
Key findings:Initial infection vectorCrypto miningBanking moduleNew BeatBanker samples dropping BTMOBVictimsConclusionIndicators of compromiseSort: