Broadcom
Astaroth Banking Malware Campaign Targets Brazilian Users via WhatsApp
First seen 9 Jan 2026, 20:34 UTC
•
•80% similarity
•44.6
Share:
Export
Ask AI about this cluster
Analyzing cluster data...
Referenced clusters:
Something went wrong. Please try again.
Cluster AI
Ask questions about this threat cluster with AI-powered analysis.
Get Researcher $29.99/moArticle Content
Browse articles
The Astaroth banking malware has resurfaced, utilizing WhatsApp as an automated infection vector specifically targeting Brazilian users. This new campaign is referred to as 'Boto Cor-de-Rosa' and has been identified by the Acronis Threat Research Unit.
ThreatCluster AI