GodFather Malware — Analysis, Campaigns & Threat Activity

Threat entity extracted from intelligence sources

Frequency
7
occurrences
First Seen
April 16, 2026
Last Seen
September 3, 2026

Related Threat Clusters

  • Surge in Android Banking Trojans: Four Campaigns Identified

    Zimperium's zLabs has reported a significant increase in Android Banking Trojan activity, identifying four distinct campaigns: RecruitRat, SaferRat, Astrinox, and Massiv. These campaigns utilize advanced…

    158 articles · Updated April 16, 2026
  • StreamRat Trojan Targets Spanish Users via Meta Ads

    In late July 2026, a new Android banking trojan named StreamRat was identified, targeting Spanish-speaking users through a fake television-streaming campaign on Meta platforms. The malware is distributed via a phishing…

    4 articles · Updated September 2, 2026
  • APK Malformation: A Rising Threat in Android Malware Evasion Tactics

    APK malformation has become a prevalent anti-analysis technique in Android malware, identified in over 3,000 samples from various families, including Teabot, TrickMo, Godfather, and SpyNote. Attackers exploit the…

    2 articles · Updated April 16, 2026

Recent Intelligence Reports

  • From Meta Ads To Full Device Takeover Uncovering Streamrat — www.threatfabric.com · September 3, 2026
  • T1660 — attack.mitre.org · July 11, 2026
  • T1516 — attack.mitre.org · July 8, 2026
  • 001 — attack.mitre.org · July 8, 2026
  • Malformed Apks As An Anti Analysis Technique Malfixer Tool — www.cleafy.com · April 16, 2026
  • T1422 — attack.mitre.org · April 16, 2026
  • APK Malformation Found in Thousands of Android Malware Samples — Infosecurity-Magazine · April 16, 2026

CVSS v3.1 Breakdown