Security experts have issued urgent warnings regarding two significant threats targeting Google Chrome users. The first, a remote access Trojan known as StilachiRAT, infiltrates devices through fake updates and compromised Chrome extensions. This malware is part of a broader scam that has the potential to steal sensitive information, including social security numbers and banking data. The FBI has specifically alerted the estimated 3 billion Chrome users about a fake URL scheme that tricks victims into providing personal information under the guise of file conversion services. Additionally, a new Android Trojan named Crocodilus has emerged, which masquerades as Google Chrome to hijack devices, bypassing Android 13+ protections and stealing banking and cryptocurrency credentials. This malware has been reported to be particularly active in Spain and Turkey, raising concerns about its ability to remotely control affected devices and record user actions.
Experts warn of the new sophisticate Crocodilus mobile banking Trojan: https://t.co/uZ31I3y5hE by Security Affairs #infosec #cybersecurity #technology #news
New Android Trojan Crocodilus Abuses Accessibility to Steal Banking and Crypto Credentials https://t.co/JiJ6OLjQGf
🚨 New Android threat spotted: Crocodilus malware is targeting users in Spain and Turkey, posing as Google Chrome to hijack phones. • Bypasses Android 13+ protections • Abuses Accessibility to steal credentials • Records screen & key actions • Remotely controls the device • https://t.co/hfx3rXx7Sa