Meta Ads Push StreamRat Android Trojan That Can Gain Near-Complete Device Control

Summary

Cybersecurity researchers have identified a new Android banking trojan named StreamRat, which was distributed via a fraudulent television-streaming advertisement campaign on Meta platforms targeting Spanish-speaking users. This malware is capable of granting its operators extensive control over infected devices, with the campaign reaching a significant number of Meta accounts in the European Union.

IFF Assessment

FOE

The discovery of a new banking trojan that can gain near-complete control of devices represents a significant threat to users and defenders.

Defender Context

This incident highlights the ongoing threat of banking trojans and the sophisticated social engineering tactics used to distribute them, particularly through popular social media platforms. Defenders should be aware of campaigns masquerading as legitimate services and educate users about the risks of clicking on suspicious ads, especially those offering free streaming services.

Read Full Story →