FvncBot is a malware family tracked across 3 threat clusters and 6 intelligence report mentions on ThreatCluster. First observed December 6, 2025; most recent activity February 6, 2026.
FvncBot is an Android banking malware family that captures keystrokes and injects malicious payloads to steal credentials and enable fraudulent transactions. It drops additional payloads to expand access, making it a notable mobile threat amid the December 2025 surge in Android banking malware.
FvncBot is a new Android banking malware first observed on November 25, 2025. It is designed to capture keystrokes, record screens, and inject fake login pages into banking applications, primarily affecting users of…
A new malicious application named FvncBot has been identified, targeting mobile banking customers in Poland. Disguised as a legitimate security tool from mBank, it exploits Android's accessibility services to deploy a…
In 2025, Android users are facing a significant increase in malware threats, specifically from strains named Albiriox and Sturnus. These malware types are capable of taking over personal accounts, manipulating banking…