top of page
GoldFactory Hits Southeast Asia with Modified Banking Apps Driving 11,000+ Infections
4 december 2025 om 09:27:00
thehackernews.com
GoldFactory cybercriminal group has launched a new campaign targeting mobile users in Indonesia, Thailand, and Vietnam since October 2024. The attackers impersonate government services and distribute modified banking applications infected with Android malware. The campaign has resulted in over 11,000 infections across Southeast Asia. The malware-laden apps act as conduits for delivering malicious payloads to victims' devices. This represents an active, large-scale financial cybercrime operation targeting the banking sector in the region.
Related links:
Related CVE's:
No CVEs found in this article
Related threat actors:
GoldFactory
Affected products:
Android banking applications
IOC's:
No IOCs found in this article
bottom of page
