Home -
Original -
Main body -

WikiFX Express

TMGM
Exness
XM
FXTM
EC markets
GTCFX
AVATRADE
FOREX.com
IC Markets Global
D prime

New trojan campaigns attack hundreds of crypto wallets and banking apps

WikiFX
| 2026-05-04 11:14

Abstract:Four Android malware families are targeting over 800 crypto and banking apps, using fake login screens, OTP interception, and stealth techniques to steal sensitive data while evading traditional security tools.

WhatsApp Image 2026-05-04 at 11.11.45 AM.jpeg

Cybersecurity researchers have identified four active families of Android malware that are currently targeting more than 800 applications, including cryptocurrency wallets and banking platforms. These malware strains, known as RecruitRat, SaferRat, Astrinox and Massiv, are designed to evade traditional security systems, posing a significant risk to users who manage financial assets on mobile devices. The findings were released by Zimperiums zLabs team, which has been tracking these threats and their evolving capabilities.

Each malware family operates through its own command-and-control infrastructure, enabling attackers to steal login credentials, intercept financial transactions and extract sensitive user data from infected devices. Once installed, the malware can overlay fake login screens on top of legitimate applications, capturing passwords and private information in real time. Researchers noted that these malicious interfaces are highly convincing, often using deceptive HTML overlays that closely mimic genuine app environments. By leveraging Androids Accessibility Services, the malware can detect when a user opens a financial application and immediately trigger the attack.

Beyond credential theft, these trojans have advanced capabilities that further increase their impact. They can intercept one-time passcodes, stream a device‘s screen to remote attackers, conceal their own presence by hiding app icons and prevent users from uninstalling them. The distribution methods vary across campaigns, with each malware family using different tactics to lure victims. SaferRat has been spread through fake websites offering free access to premium streaming services, while RecruitRat has been embedded in fraudulent job application processes that direct users to download malicious APK files. Astrinox has used similar recruitment-based tactics through domains such as xhire[.]cc, delivering different content depending on the user’s device. Although iOS users may encounter pages that resemble the Apple App Store, there is currently no evidence of successful iOS compromise. The distribution method for Massiv remains unclear, but all four families rely heavily on phishing techniques, text message campaigns and social engineering strategies that exploit urgency and curiosity.

One of the most concerning aspects of these malware campaigns is their ability to bypass detection. Researchers found that they employ advanced anti-analysis techniques and manipulate Android application package structures to achieve near-zero detection rates against traditional signature-based security tools. Their network communications are also designed to blend in with normal traffic, using encrypted HTTPS and WebSocket connections, sometimes with additional layers of encryption. Furthermore, these threats use multi-stage installation processes to circumvent Androids evolving permission controls, allowing them to maintain persistence on infected devices.

Although the report does not specify which cryptocurrency wallets or exchanges are directly targeted, the nature of overlay attacks, passcode interception and screen monitoring means that any Android-based financial application could be vulnerable if users install software from untrusted sources. The primary risk arises when users download applications from links received through text messages, job postings or promotional websites, rather than from official app stores.

As mobile-based financial activity continues to grow, this development highlights the importance of maintaining strict security practices. Users managing cryptocurrency or banking activities on Android devices are strongly advised to download applications only from verified platforms and remain cautious of unsolicited prompts to install software. Vigilance in app sourcing and awareness of emerging threats remain essential in protecting digital assets in an increasingly complex cybersecurity landscape.

20251209-161539.jpeg
20260126-101313.png
CryptocurrencyCrypto Market Crypto Markets#CryptoNews

Read more

WAYONE CAPITAL Review 2026: Trading Complaints on Withdrawal Denials & Platform Glitches

WAYONE CAPITAL, a Saint Lucia-based forex broker, is reportedly facing allegations from users worldwide. Most users allege that the brokerage entity does not comply with fund withdrawal norms and gives petty excuses for not releasing funds on time. Additionally, users have complained about the reflection of the wrong trading account balance while accessing the WAYONE CAPITAL login. If you have faced similar concerns with this broker, you are at the right place! This 2026 WAYONE CAPITAL review article examines user allegations and gives an update on the broker’s regulatory status.

Original 2026-06-11 23:20

In-depth Alpari Exposure Report: Account Restriction and Withdrawal Denial Allegations

Were you restricted from opening trades on the Alpari trading platform? Did the Comoros-based forex broker prevent you from accessing withdrawals despite numerous requests? Have you faced trading losses because of the chart-related errors? These have reportedly turned into large-scale negative reviews for the broker online. This Alpari review 2026 article is aimed at providing insight into user allegations and the broker’s regulatory framework.

Original 2026-06-10 23:39

Pepperstone Review 2026: Massive Deposit & Withdrawal Complaints Against This Regulated Broker

Have you experienced issues with Pepperstone deposit & withdrawal processing? From your experience, do you feel that the Australia-based forex broker causes losses to its clients? Did the brokerage entity freeze your account and give you a margin call? All these trading allegations have been rampant on broker review platforms such as WikiFX. This Pepperstone review article takes a close look at the user complaints, especially in 2026. Additionally, we have given an overview of the regulatory framework under which the brokerage entity operates.

Original 2026-06-06 14:42

Headway Review 2026: Examining the Latest Withdrawal, Slippage and Spread Complaints

Did your profits disappear just as you tried to withdraw funds from your Headway account? Have you been manipulated in the name of a forex bonus challenge by receiving a negligible sum compared to what was promised? Did you face capital losses due to abnormal spreads and slippages? Your issues resonate with others who have complained about the broker online. In this Headway review article, we have investigated these complaints while providing our firm view on the broker’s regulatory oversight.

Original 2026-06-02 20:54

WikiFX Express

TMGM
Exness
XM
FXTM
EC markets
GTCFX
AVATRADE
FOREX.com
IC Markets Global
D prime

WikiFX Broker

FXTM

FXTM

Regulated
XM

XM

Regulated
FXCM

FXCM

Regulated
AVATRADE

AVATRADE

Regulated
Ultima

Ultima

Regulated
TMGM

TMGM

Regulated
FXTM

FXTM

Regulated
XM

XM

Regulated
FXCM

FXCM

Regulated
AVATRADE

AVATRADE

Regulated
Ultima

Ultima

Regulated
TMGM

TMGM

Regulated

WikiFX Broker

FXTM

FXTM

Regulated
XM

XM

Regulated
FXCM

FXCM

Regulated
AVATRADE

AVATRADE

Regulated
Ultima

Ultima

Regulated
TMGM

TMGM

Regulated
FXTM

FXTM

Regulated
XM

XM

Regulated
FXCM

FXCM

Regulated
AVATRADE

AVATRADE

Regulated
Ultima

Ultima

Regulated
TMGM

TMGM

Regulated

Latest News

Spotting Trend Reversals: How to Read Hammer and Engulfing Candlesticks

WikiFX
2026-06-16 09:30

Why Real Money Forex Trades Trigger Early Exits

WikiFX
2026-06-15 11:00

RM371,000 in Life Savings Lost After Trusting a Facebook Investment Ad

WikiFX
2026-06-15 17:17

$100 Million Fine, Deposit Delays and Customer Outrage: Is TIGER BROKERS Losing Traders' Trust?

WikiFX
2026-06-15 21:54

Stockity Review 2026: Offshore Regulation, Complaints, and Withdrawal Risk Signals

WikiFX
2026-06-16 13:00

Japan raises interest rate to highest since 1995

WikiFX
2026-06-16 03:21

Trading the 24-Hour Currency Market on a 9-to-5 Schedule

WikiFX
2026-06-16 12:00

Dollar Slips After Ceasefire Agreement

WikiFX
2026-06-16 12:00

ForexDana Review 2026: Is This Forex Broker Safe?

WikiFX
2026-06-16 12:00

Kraken Becomes FIFA World Cup 2026's Official Crypto Exchange | What It Means for Investors

WikiFX
2026-06-16 15:53

Rate Calc

USD
CNY
Current Rate: 0

Amount

USD

Available

CNY
Calculate

You may also like

Fortradefx

Fortradefx

APEL INVESTMENTS

APEL INVESTMENTS

METADEFI GLOBAL

METADEFI GLOBAL

Trading Markets

Trading Markets

Meritronfx

Meritronfx

TradeHall

TradeHall

Chilli MARKETS

Chilli MARKETS

SJIVAULT

SJIVAULT

Zielgerade LTD

Zielgerade LTD

BIS MARKETS

BIS MARKETS