securelist · Crawled Aug 15, 2026

IT threat evolution in Q2 2026. Mobile statistics

2 IoCs 1 Malware
Read original article ↗

AI Summary

In Q2 2026, mobile threats continued to evolve with a notable presence of banking Trojans, particularly variants of Mamont and Creduz. Attackers increasingly used malicious loaders distributed through Google Play, including trojanized apps like a PDF reader and the Cleanova app, to deliver banking malware such as Anatsa. These loaders employed sophisticated evasion techniques, including conditional payload delivery based on installation source telemetry, to bypass app store reviews and target specific users.

AI-extracted · verify before operational use

Extracted Entities 1 found

Indicators of Compromise 2 extracted

Type Value Detail
Filename Cleanova Details →
Filename PDF reader app Details →

MITRE ATT&CK TTPs 3 techniques