No Result
View All Result
Global Finances Daily
  • Alternative Investments
  • Crypto
  • Financial Markets
  • Investments
  • Lifestyle
  • Protection
  • Retirement
  • Savings
  • Work & Careers
No Result
View All Result
  • Alternative Investments
  • Crypto
  • Financial Markets
  • Investments
  • Lifestyle
  • Protection
  • Retirement
  • Savings
  • Work & Careers
  • Login
Global Finances Daily
No Result
View All Result
Home Crypto

US Crypto Community Under Siege by Xenomorph Android Malware: Details

September 26, 2023
in Crypto
0
Xenomorph


A recent discovery by security experts has revealed the existence of a malware that specifically targets Android users in the US, Canada, Italy, Portugal, Spain, and Belgium.

Known as Xenomorph, the perpetrators behind this highly advanced Android banking trojan have been consistently directing their efforts towards European users for more than a year. However, they have recently expanded their operations to include consumers of over 25 American financial institutions.

The Xenomorph has returned, and this iteration is even more lethal than ever. Now a more serious danger, it has spread to more than 100 financial and cryptocurrency apps, according to analysts.

Phishing Tactics And Malware Distribution

The current Xenomorph campaign began in mid-August, according to analysts at cybersecurity firm ThreatFabric, who have been monitoring the malware’s activity since February 2022.

The malware authors’ latest campaign involves phishing URLs that encourage users to update their Chrome browsers and download the dangerous APK. The malware is still using overlay techniques to collect data, but now it is now going after US banks and a variety of cryptocurrency apps.

ThreatFabric analysts gained access to the malware operator’s payload hosting infrastructure by taking advantage of the operator’s lax security procedures.

As of today, the market cap of cryptocurrencies stood at $1.02 trillion. Chart: TradingView.com

The malware’s Private Loader, the Windows information thieves RisePro and LummaC2, and the Android malware versions Medusa and Cabassous were among the other harmful payloads they found there.

A noteworthy characteristic of the latest iteration of Xenomorph pertains to its advanced and adaptable Automatic movement System (ATS) structure, which facilitates the automated movement of cash from a compromised device to one controlled by an attacker.

Xenomorph Goes After Banks

The ATS engine of the Xenomorph malware has several modules that enable threat actors to gain control over compromised devices and carry out a range of malicious activities.

The malware targets Chase, Amex, Ally, Citi Mobile, Citizens Bank, Bank of America, and Discover Mobile consumers. ThreatFabric researchers found new trojan samples that target Bitcoin, Binance, and Coinbase.

The Xenomorph banking virus targeted 56 European banks employing screen overlay phishing in early 2022. Google Play delivered it to over 50,000 users.

Hadoken Security: The Malware Brains

The firm behind it, “Hadoken Security,” improved the virus and released a modular, flexible version in June 2022. Xenomorph was one of the top 10 banking trojans and a Zimperium “major threat” by then.

Depending on the demographic, each Xenomorph sample has about a hundred overlays that target various banks and cryptocurrency apps.

Meanwhile, users should exercise caution when urged to upgrade their mobile browsers, as these requests are often hidden spyware.

Featured image from Bleeping Computer

Editorial Team

Editorial Team

Related Posts

Cointelegraph
Crypto

Bakkt Finishes Acquisition of Stablecoin Infrastructure Firm

May 1, 2026
Bitcoin open interest spikes near $70k amid leverage surge
Crypto

Bitcoin community launches Bitcoin Beyond 66 AI tool to counter energy concerns

May 1, 2026
Trump briefed on military options as Iran conflict escalates
Crypto

Trump briefed on military options as Iran conflict escalates

May 1, 2026
Bitcoin
Crypto

Spot Vol Drops To Lowest Since Oct ’23

May 1, 2026
Cointelegraph
Crypto

Bitcoin Price Action Favors Bears But Profit Taking Overwhelms Each Rally

May 1, 2026
TruStage pilots TSDA dollar stablecoin for U.S. credit unions
Crypto

U.S. Senate votes to ban members from using prediction markets

May 1, 2026
Load More
Next Post
The Growing Risks of Shadow IT and SaaS Sprawl

The Growing Risks of Shadow IT and SaaS Sprawl

Popular News

  • 35 Best Hotels in New York City We Won't Shut Up About

    35 Best Hotels in New York City We Won’t Shut Up About

    0 shares
    Share 0 Tweet 0
  • Brent crude tops $108 as US-Iran tensions escalate

    0 shares
    Share 0 Tweet 0
  • Crypto downturn hits household budgets, survey finds

    0 shares
    Share 0 Tweet 0
  • I Love My TCL QLED TV, and This 75-Inch Model Is $620 Off Right Now

    0 shares
    Share 0 Tweet 0
  • Asda to buy UK operations of petrol chain operator EG Group in £2.3bn deal

    0 shares
    Share 0 Tweet 0

Latest News

Cointelegraph

Bakkt Finishes Acquisition of Stablecoin Infrastructure Firm

May 1, 2026
0

Digital asset company Bakkt completed its acquisition of stablecoin infrastructure firm Distributed Technologies Research (DTR) through an equity-based transaction as...

A year after selling $2.7 million Austin mansion, actress Haylie Duff and Matt Rosenberg call off 12-year engagement

A year after selling $2.7 million Austin mansion, actress Haylie Duff and Matt Rosenberg call off 12-year engagement

May 1, 2026
0

Haylie Duff has split from her fiancé, Matt Rosenberg, 12 years after the former couple announced they were engaged—and six...

Bitcoin open interest spikes near $70k amid leverage surge

Bitcoin community launches Bitcoin Beyond 66 AI tool to counter energy concerns

May 1, 2026
0

A Nordic Bitcoin education group has released an open-source AI database designed to generate evidence-backed responses to common criticisms about...

Trump lifts tariffs on UK whisky to toast departing King Charles

Trump lifts tariffs on UK whisky to toast departing King Charles

May 1, 2026
0

Trump lifts tariffs on UK whisky to toast departing King Charles

Global Finances Daily

Welcome to Global Finances Daily, your go-to source for all things finance. Our mission is to provide our readers with valuable information and insights to help them achieve their financial goals and secure their financial future.

Subscribe

  • About Us
  • Contact
  • Privacy Policy
  • Terms of Use
  • Editorial Process

© 2025 All Rights Reserved - Global Finances Daily.

No Result
View All Result
  • Alternative Investments
  • Crypto
  • Financial Markets
  • Investments
  • Lifestyle
  • Protection
  • Retirement
  • Savings
  • Work & Careers

© 2025 All Rights Reserved - Global Finances Daily.

Welcome Back!

Login to your account below

Forgotten Password?

Retrieve your password

Please enter your username or email address to reset your password.

Log In
This website uses cookies. By continuing to use this website you are giving consent to cookies being used. Visit our Privacy and Cookie Policy.