Bitget App
Trade smarter
Buy cryptoMarketsTradeFuturesEarnSquareMore
New Bank Trojan Infecting Thousands of Android Devices, Capable of Draining Accounts Automatically, Warns Cleafy

New Bank Trojan Infecting Thousands of Android Devices, Capable of Draining Accounts Automatically, Warns Cleafy

Daily HodlDaily Hodl2025/10/11 16:00
By:by Henry Kanapi

A newly discovered Android banking trojan is giving hackers the ability to hijack mobile devices and drain accounts while victims sleep.

In a new report, Italian cybersecurity firm Cleafy says the malware, named Klopatra, has already infected more than 3,000 devices across Europe in active campaigns targeting banks in Spain and Italy.

Cybersecurity researchers say the threat surfaced in late August 2025 and represents a “significant evolution in mobile malware sophistication.” Klopatra combines full device takeover with next-level code obfuscation designed to block detection and traditional analysis methods.

According to Cleafy, Klopatra infects devices by posing as a legitimate app called Mobdro Pro IP TV + VPN. The app promises access to high-quality television channels, which researchers say is a design choice, as users are willing to install pirated streaming apps from unofficial sources to bypass the Google Play Store.

Once installed and permission is granted, Klopatra abuses Android’s Accessibility Services to read screen content, capture keystrokes and simulate taps to approve fraudulent bank transfers.

“It can simulate taps and gestures, allowing it to navigate apps, click buttons (‘Allow,’ ‘Transfer’), enter text, and ultimately, perform fraudulent transactions autonomously.

The abuse of Accessibility Services is the cornerstone of modern banking malware fraud. The technical mechanism turns a malware infection into a direct financial loss, allowing Klopatra to operate with the same level of authority as the legitimate user, but completely invisibly.”

Cleafy warns that the attackers often strike at night when victims’ phones are charging and unattended, using stolen unlock patterns or PINs to quietly execute instant bank transfers.

“Klopatra represents a significant and sophisticated threat to the financial sector and mobile device users, particularly in Europe. The analysis conducted by the Cleafy team revealed malware that is not only technically advanced but is also managed by a cohesive and disciplined Turkish-speaking criminal group, controlling operations from A to Z.”

Generated Image: Midjourney

0

Disclaimer: The content of this article solely reflects the author's opinion and does not represent the platform in any capacity. This article is not intended to serve as a reference for making investment decisions.

PoolX: Earn new token airdrops
Lock your assets and earn 10%+ APR
Lock now!

You may also like

Bitcoin News Update: Tether's Mining Venture in Uruguay Falters Due to High Energy Expenses and Regulatory Challenges

- Tether halts Uruguay Bitcoin mining due to rising energy costs and regulatory hurdles. - The $500M project led to $100M+ spent and 30 layoffs amid unsustainable costs. - The failure highlights crypto mining risks in regions with unstable energy pricing. - Tether shifts focus to Paraguay/El Salvador as industry migrates to cheaper energy. - S&P downgrades USDT stability, warning of undercollateralization risks from Bitcoin exposure.

Bitget-RWA2025/11/30 04:38
Bitcoin News Update: Tether's Mining Venture in Uruguay Falters Due to High Energy Expenses and Regulatory Challenges

The ChainOpera AI Token Collapse: A Cautionary Tale for Cryptocurrency Initiatives Powered by AI

- ChainOpera AI (COAI) token's 96% collapse in late 2025 exposed systemic risks in AI-integrated blockchain ecosystems, warning investors about conflating innovation with stability. - Hyper-centralized governance (87.9% supply controlled by 10 wallets) and opaque "black box" AI models triggered liquidity crises and panic selling, eroding trust. - Regulatory ambiguities from U.S. CLARITY/GENIUS Acts and speculative hype (96% 24h surge) amplified volatility, as 80% locked supply posed future sell-off risks.

Bitget-RWA2025/11/30 04:38
The ChainOpera AI Token Collapse: A Cautionary Tale for Cryptocurrency Initiatives Powered by AI

Behavioral Economics and Protecting Investors in Developing Cryptocurrency Markets

- COAI token's 2025 collapse erased $116.8M due to centralized control, unstable AI algorithms, and regulatory ambiguity. - Behavioral biases like overconfidence and herd mentality amplified risks, creating panic-driven feedback loops during the crisis. - Investors are advised to prioritize transparent audits, diversify across vetted projects, and leverage real-time fraud detection tools. - Regulatory frameworks like EU's MiCA and psychological discipline are critical to mitigate systemic and behavioral ri

Bitget-RWA2025/11/30 04:38
Behavioral Economics and Protecting Investors in Developing Cryptocurrency Markets