Cybersecurity researchers have found an enhanced version of the Android malware TgToxic. First documented by Trend Micro in 2023, the banking trojan steals crypto and financial data, mainly from mobile users in Asia. An updated variant introduced expanded data-gathering features and spread operations, believed to be run by Chinese-speaking threat actors. The frequent updates and improvements to the malware demonstrate the hackers’ commitment to monitoring open source intelligence and to adapting the software to improve security measures.

Multi-Vector Malware Exploiting Outlook API, DNS & ICMP Tunneling for C2
The newly identified malware “Squidoor,” suspected to be created by a Chinese threat actor, is a sophisticated tool targeting sectors such as government, defence, telecommunications,