GhostGrab
GhostGrab is an Android malware family, described by CyFirma as a new Android banking trojan that combines financial data theft with covert cryptocurrency mining.
Profile source: Mallory opens in a new tabGhostGrab
Family profile
GhostGrab is an Android malware family, described by CyFirma as a new Android banking trojan that combines financial data theft with covert cryptocurrency mining. Reported capabilities include theft of banking credentials, payment card details, personal information, and broader data exfiltration, alongside covert Monero mining on infected devices. The available reporting characterizes it as using advanced persistence and stealth techniques. It is associated in the provided content with Android/mobile targeting; no specific threat actor attribution, victimology, infection vector, or indicators of compromise are provided in the source material.
MITRE ATT&CK