THE latest update on the ToxicPanda banking Trojan reveals an evolution into a more sophisticated threat targeting both individual users and enterprise systems. ToxicPanda 2.0 introduces 167 new remote commands, expanding its target from 16 banking institutions to 349 financial applications, including e-wallets and cryptocurrencies. It now leverages advanced techniques for device access, such as privilege escalation and long-term persistence through Android's Wireless Debugging.
Initially observed in 2024, the Trojan's evolution underscores a trend where banking Trojans compromise devices rather than just applications, presenting heightened risks to enterprise security. Zimperium recommends integrating multilayered defenses to protect against such malware.