banking apps

AppWizard
March 12, 2026
Cybersecurity researchers have identified six new families of Android malware designed to extract sensitive data and facilitate financial fraud. Notable threats include: - PixRevolution: Targets Brazil's Pix payment platform, activates during Pix transfers, and uses real-time monitoring to intervene in transactions. Victims are tricked into installing malicious apps from counterfeit Google Play Store listings, which enable accessibility services for the malware to capture screens and overlay fake interfaces to reroute funds. - BeatBanker: Spreads through phishing attacks disguised as legitimate Google Play Store pages. It uses an inaudible audio loop for persistence, functions as a banking trojan, and includes a cryptocurrency miner. It creates deceptive overlays for platforms like Binance and Trust Wallet to divert funds and can monitor web browsers and execute remote commands. - TaxiSpy RAT: Exploits accessibility services to gather sensitive information such as SMS messages and call logs, targeting banking and cryptocurrency applications with overlays for credential theft. It employs advanced evasion techniques like native library encryption and real-time remote control. - Mirax: A private malware-as-a-service (MaaS) offering with a subscription model that provides tools for banking overlays and information gathering, including keystrokes and SMS. - Oblivion: Another Android RAT available at a competitive price, featuring capabilities to bypass security measures on various devices. - SURXRAT: Distributed through a Telegram-based MaaS ecosystem, it uses accessibility permissions for persistent control and communicates with a Firebase-based command-and-control infrastructure. Some samples incorporate a large language model component, indicating experimentation with AI by threat actors.
AppWizard
March 11, 2026
UnifiedAttestation is a new initiative from Europe aimed at creating a free and open-source alternative to Google’s Play Integrity checks, which are essential for banking, financial, and government applications. Many of these applications currently rely on the Play Integrity API, which does not support custom ROMs or alternative Android forks, limiting access for users of these systems. The initiative is backed by smartphone manufacturer Volla and partners like Murena and iodé OS. UnifiedAttestation will be distributed under an Apache 2.0 license, allowing developers to adapt it, with Volla stating that integration requires only a few lines of code. However, the Graphene OS team has expressed concerns about the ethical implications of smartphone manufacturers determining which operating systems can use their applications, advocating for the regulation of the Play Integrity API instead.
AppWizard
February 26, 2026
When connecting to public Wi-Fi, using a VPN is essential as it encrypts traffic and creates a secure tunnel between the device and a remote server, keeping activities concealed from the local network. Android devices continuously communicate in the background, performing tasks such as updating emails and syncing notes, which increases data visibility on public networks. Public Wi-Fi has become common due to remote work and shared spaces, leading to increased privacy risks as smartphones now store sensitive information like banking apps and personal photos. Users are encouraged to adopt simple security habits, including using a VPN when connecting to public networks. Android devices are always connected, making network-level protection important to safeguard background communications.
AppWizard
December 24, 2025
Google has released Android 16 QPR3 Beta 1.1 to fix a bug causing certain applications, including Microsoft Teams, OneDrive, and various banking apps, to crash upon launch. The update is available for eligible Pixel phones in the Android Beta Program, starting with the Pixel 6 series. Most users will receive build CP11.251114.007, while the Pixel 7a has a different variant. The OTA package is about 60MB. Initial feedback shows that the update has resolved crashes for most banking applications, but some Microsoft apps still have launch issues. Users are cautioned that opting out of the beta after installing this update may risk data corruption.
AppWizard
December 17, 2025
Android users are warned about fraudulent VPN applications that pose significant security threats by installing malware on devices and compromising personal and banking information. These malicious apps mimic reputable VPNs and use enticing advertisements to lure users. Once installed, they can introduce various forms of malware, including trojans and remote access tools, leading to severe consequences such as unauthorized access to personal accounts and financial loss. Cybercriminals employ sophisticated tactics, including professional advertising and AI-generated content, to create an illusion of legitimacy. Google advises users to download VPN services only from trusted sources, look for the verified VPN badge on the Google Play Store, and be cautious of free VPN services that may collect excessive data or contain malware.
AppWizard
December 9, 2025
Samsung is introducing a built-in Private Album feature in the Gallery app as part of the One UI 8.5 update, aimed at enhancing privacy for sensitive photos. This feature simplifies the process of managing private images, allowing users to easily move photos to the Private Album without the need for the Secure Folder. Access to the Private Album is secured by fingerprint or screen lock, and screenshots are disabled within this section. Currently, the feature is in beta and has limited functionalities, such as sorting files only by date. The official rollout is pending for users to fully experience the feature.
AppWizard
December 4, 2025
Google has introduced the Expanded Dark Mode feature for Pixel phone users with the rollout of Android QPR2 in early December. This feature allows users to enforce a dark theme across most applications, even those without native dark mode support. The Expanded Dark Mode is available on all Pixel models that have received the Android QPR2 update, including Pixel 6, 6 Pro, 6a, 7, 7 Pro, 7a, Pixel Tablet, Pixel Fold, 8, 8 Pro, 8a, 9, 9 Pro/9 Pro XL, 9 Pro Fold, 9a, 10, and 10 Pro/10 Pro XL. To enable it, users must ensure their device is compatible and running the December update (version number starting with BP4A.251205.006). They can then activate the feature by going to Settings > Display & touch > Dark theme and switching to Expanded dark mode. While the feature enhances accessibility and readability, its effectiveness varies across applications. Some apps, like Transavia, adapt well, while others, such as Amazon and certain banking apps, do not display the dark theme effectively. Mapping applications like Citymapper and IDF Mobilités also show limited improvement. The Expanded Dark Mode is considered an improvement over the previous color inversion toggle and the Override force-dark option, offering a better experience for many users, although those using graphic-heavy apps may prefer the Standard Dark Mode.
Search