Skip to content
#

banking-trojan

Here are 7 public repositories matching this topic...

Language: All
Filter by language

Android banker-malware education framework. 4 specimen APKs (0/75 VT), 95 detection rules, 8,300+ lines of red/blue analysis covering 17 banker families.

  • Updated May 15, 2026
  • Kotlin

In-depth malware research report analyzing TrickBot's evolution from a banking trojan to a modular threat tool used in ransomware campaigns. Covers threat actor attribution, MITRE ATT&CK mapping, propagation techniques, and defensive strategies.

  • Updated Jun 18, 2025

Free Module 1: An educational Android security lab demonstrating how modern banking trojans steal credentials using fake system update notifications and full-screen phishing overlays. Includes a Kotlin Android app and a Python Flask C2 dashboard for real-time exfiltration. For research and defense analysis only.

  • Updated May 24, 2026
  • Kotlin

Detection-as-code for three BFSI-targeting banking trojans (Banana RAT/SHADOW-WATER-063, TrickMo/Coper, TCLBANKER): Sigma + Microsoft Sentinel (KQL) + Google SecOps (YARA-L) rules, IOCs with GTI verdicts, and MITRE ATT&CK coverage.

  • Updated May 24, 2026
  • Python

Improve this page

Add a description, image, and links to the banking-trojan topic page so that developers can more easily learn about it.

Curate this topic

Add this topic to your repo

To associate your repository with the banking-trojan topic, visit your repo's landing page and select "manage topics."

Learn more