CYFIRMA Research- Android Malware Posing as Indian Bank Apps
Update: 2025-08-28
Description
Posing as Indian banking apps, this Android malware deploys a hidden main payload that silently installs, maintains stealthy persistence, and facilitates credential theft. It harvests SMS, steals debit card details, and hijacks call forwarding all while leveraging Firebase Cloud Messaging (FCM) as its Command & Control (C2) channel.
Link to the Research Report: https://www.cyfirma.com/research/android-malware-posing-as-indian-bank-apps/
#AndroidThreat #FCMCommandControl #MalwareAnalysis #MobileSecurity #CyberThreat #BankingMalware #ThreatHunting #AndroidMalware #CyberSecurity #CYFIRMA #ExternalThreatLandscapeManagement #ETLM #BankingTrojan #Infosec #ThreatIntel
https://www.cyfirma.com/
Comments
In Channel