Herodotus: Advanced Android Trojan Mimics Human Behavior to Steal Banking Credentials

Herodotus: Advanced Android Trojan Mimics Human Behavior to Steal Banking Credentials

First seen 2 Nov 2025, 16:14 UTC ThehackernewsTheregisterSecurityaffairs.CoAndroidauthorityLinkedin+1 71% similarity 26.6

Article Content

Browse articles
ThreatCluster

The Herodotus Trojan is a new Android banking malware identified by ThreatFabric that mimics human typing patterns to evade detection by anti-fraud systems. It employs random delays between keystrokes and can intercept SMS messages to capture two-factor authentication codes. This malware has been reported in device takeover attacks in Italy and Brazil, and is offered as malware-as-a-service (MaaS).

ThreatCluster AI How this analysis works

Community

Browse all →