Crocodilus, a sophisticated Android banking trojan, is now targeting users globally, including Europe, South America, and parts of Asia.
The malware spreads by posing as legitimate apps like online casinos or fake banking apps, exploiting vulnerabilities in Android devices.
Crocodilus requests accessibility service permissions once installed, overlaying fake login pages on banking and cryptocurrency apps to capture user credentials.
To protect against Crocodilus and similar threats, users are advised to download apps from trusted sources, update device software regularly, and implement robust security measures like multi-factor authentication.