HackerFeeds

CyberSecurity News

ToxicPanda 2.0 and GoldDigger Expand Android Banking Attacks with On-Device Fraud

The Hacker News
· August 20, 2026

AI summary

Cybersecurity researchers have discovered an updated version of the ToxicPanda malware, which has undergone significant enhancements. The updated malware includes a set of remote commands and has expanded its global reach. Additionally, it features a PIN harvesting workflow that targets over 140 banking and cryptocurrency applications on Android devices. The malware's capabilities have been detailed in a report by Zimperium zLabs. The enhancements to ToxicPanda suggest a growing threat to Android users, particularly those using banking and cryptocurrency apps.

Read the full article at The Hacker Newsthehackernews.com/2026/08/toxicpanda-20-and-golddigger-expand.html

This is an AI-generated brief aggregated by HackerFeeds for convenience and grounded in the source’s own summary; the related CVE, threat-group and country data is from HackerFeeds’ own indexes. The original article is the authoritative source — all rights belong to The Hacker News.