Cybersecurity firm Zimperium discovered over 200 fake mobile apps imitating major Iranian banks to steal customer information. The malware creators have expanded their capabilities since the campaign began in July, with the fraudulent apps now capable of scanning for cryptocurrency wallet apps. In addition to stealing banking and credit card data, the fraudsters have started phishing attacks on customers of the same banks.

“PupkinStealer” A New .NET-Based Malware Steals Browser Credentials & Exfiltrate via Telegram
PupkinStealer is a C# malware that steals sensitive data, including browser credentials and desktop files, using Telegram for stealthy data exfiltration. Discovered in April 2025,