Fake Android App with 220,000+ Downloads Steals Banking Credentials

A dangerous banking trojan named Anatsa (TeaBot) was found hiding in a File Manager and Document Reader app on Google Play. Before it was removed, the app had over 220,000 downloads and targeted users worldwide. This malware steals banking passwords, bypasses two-factor authentication (2FA), and enables hackers to transfer money from victims' accounts.
- A fake app was available on Google Play, tricking users into downloading it.
- The app asked users to install a fake update, which contained the malware.
- Once installed, the trojan monitored banking activities and stole passwords.
- It created fake login screens to capture usernames and passwords.
- Hackers used stolen information to bypass 2FA and transfer money.
- The malware targeted over 600 banking and cryptocurrency apps globally.
- Google has removed the app, but similar threats continue to emerge.
To stay safe:
- Download apps only from trusted developers and check reviews.
- Never install updates from third-party links or outside the Play Store.
- Limit app permissions, especially access to SMS and accessibility services.
- Regularly check bank statements for suspicious activity.
- Use a trusted mobile security solution like Net Protector Mobile Security.
Cybercriminals continue to exploit fake apps to steal banking details. Staying alert and using strong security measures can help protect your financial data from such threats.
Comment(s)
Categories
- Other (42)
- Ransomware (136)
- Events and News (27)
- Features (45)
- Security (453)
- Tips (79)
- Google (23)
- Achievements (10)
- Products (33)
- Activation (7)
- Dealers (1)
- Bank Phishing (43)
- Malware Alerts (200)
- Cyber Attack (246)
- Data Backup (11)
- Data Breach (92)
- Phishing (152)
- Securty Tips (1)
- Browser Hijack (17)
- Adware (15)
- Email And Password (67)
- Android Security (63)
- Knoweldgebase (38)
- Botnet (15)
- Updates (3)
- Alert (71)
- Hacking (57)
- Social Media (7)
- vulnerability (56)
- Hacker (31)
- Spyware (9)
- Windows (6)
- Microsoft (21)
- Uber (1)
- YouTube (1)
- Trojan (2)
- Website hacks (4)
- Paytm (1)
- Credit card scam (1)
- Telegram (3)
- RAT (5)
- Bug (3)
- Twitter (2)
- Facebook (7)
- Banking Trojan (6)
- Mozilla (2)
- COVID-19 (5)
- Instagram (2)
- NPAV Announcement (9)
- IoT Security (1)
- Deals and Offers (2)
- Cloud Security (11)
- Offers (5)
- Gaming (1)
- FireFox (2)
- LinkedIn (2)
- WhatsApp (4)
- Amazon (2)
- DMart (1)
- Payment Risk (4)
- Occasion (3)
- firewall (2)
- Cloud malware (2)
- Cloud storage (2)
- Financial fraud (8)
- Impersonation phishing (1)
- DDoS (5)
- Smishing (2)
- Whale (0)
- Whale phishing (3)
- WINRAR (2)
- ZIP (2)
Recent Posts
Archive
Tags
cyber attack
phishing
data breach
ransomware
cyber threats
ransomeware
phishing attacks
android malware
financial security
data theft
cyber security
phishing attack
malware
cybercrime
data stealing
network security
phishingattack
data protection
twitter
data security
critical vulnerability
cyber fraud
cyber threat
trojan
cyberthreats
cert-in
financial fraud
phishing email
microsoft
cybercriminals
ddos
phishing scam
lockbit
india
ddos attack
winrar
email phishing
clop
android
server security
clop gang
cryptojacking
malicious apps
december cyber attacks
android apps
ransomware attacks
ransomware attack
pakistan-backed hacker
play store
databreach