ToxicPanda Android malware evolves to target 349 apps

Zimperium disclosed ToxicPanda 2.0 malware on August 23, which now targets 349 banking and finance applications and supports 167 remote commands. The evolved variant abuses VPN Service permissions to intercept device traffic and block Google Play updates, keeping the trojan installed.

5 reports · 3 independentother · tech

Claim audit

No BS check run yet — press ⚖ to extract this story's claims and verify them against independent sources.

All coverage

Zimperium disclosed ToxicPanda 2.0, an Android malware that abuses VPN Service permissions to intercept device traffic and block Google Play communications. It now targets 349 apps with 167 remote com

mastodon:infosec-exchangeother37d ago kagi ↗

Zimperium disclosed ToxicPanda 2.0, an Android malware that abuses VPN Service permissions to intercept device traffic and block Google Play communications. It now targets 349 apps with 167 remote commands and is distributed through Amazon AWS buckets. The VPN-based traffic interception allows persistent device control without requiring root. # ToxicPanda # AndroidThreats # VPNAbuse # Zimperium ht

🤖 ToxicPanda Android malware evolves: targets 349 banking/finance apps and supports 167 remote commands. New variant abuses VPN permissions to block Google Play updates, keeping the trojan installed

mastodon:infosec-exchangeother37d ago wire ×2 kagi ↗

🤖 ToxicPanda Android malware evolves: targets 349 banking/finance apps and supports 167 remote commands. New variant abuses VPN permissions to block Google Play updates, keeping the trojan installed to enable credential theft and fraud. 🔗 https://www. bleepingcomputer.com/news/secu rity/toxicpanda-android-malware-uses-vpn-permissions-to-block-google-play/ # Malware # Android # CyberSec