Tag: Grandoreiro banking malware

New Grandoreiro Banking Malware Variants Emerge with Advanced Tactics to Evade Detection
News

New Grandoreiro Banking Malware Variants Emerge with Advanced Tactics to Evade Detection

It has been discovered that new Grandoreiro banking malware variants use novel strategies to get over anti-fraud systems, suggesting that the malicious software is still being actively developed in spite of law enforcement's attempts to shut it down. Only a portion of this gang was taken into custody; according to a Tuesday study by Kaspersky, the remaining operators behind Grandoreiro are still attacking people worldwide, creating new software, and setting up new infrastructure. Other recently added techniques include mouse tracking, ciphertext stealing (CTS) encryption, and the application of a domain generation algorithm (DGA) for command-and-control (C2) communications read more about New Grandoreiro Banking Malware Variants Emerge with Advanced Tactics to Evade Detection. G...
Grandoreiro Banking Trojan Resurfaces, Targeting Over 1,500 Banks Worldwide
News

Grandoreiro Banking Trojan Resurfaces, Targeting Over 1,500 Banks Worldwide

After being taken down by law enforcement in January, the threat actors responsible for the Grandoreiro banking malware, which targets Windows, have launched a global campaign to resurface since March 2024. Targeting more than 1,500 institutions worldwide, the massive phishing attempts are most likely enabled by other hackers through the use of malware-as-a-service (MaaS) models. These nations include Central and South America, Africa, Europe, and the Indo-Pacific. stated IBM X-Force. Grandoreiro's expansion is probably a change in tactics following attempts by Brazilian authorities to shut down its infrastructure, even though it is best known for its focus on Latin America, Spain, and Portugal. Significant enhancements to the malware itself, indicating ongoing development, go ha...