Indonesia Hit by Android Banking App-Cloning Campaign
MediumDark Reading · Alexander Culafi·
The GoldFactory threat group exploits the Android Work Profile feature to deliver the Gigabud Trojan, while Mantax Otax spreads separately.
Read the full story at darkreading.com ↗Established Source
We summarise and link; this source is not one we hold a licence to reproduce. Everything below is what NexaPulse adds: the vulnerabilities involved, whether they are being exploited, who is named, and who else covered it.
At a glance
- Severity
- Mediumfrom category and source signals; no CVSS referenced
- Exploitation
- No vulnerabilities referenced
- Vulnerabilities
- None referenced
- Vendors & products
- Android
- Threat actors & malware
- None named
- Industries
- FinanceManufacturing
- Coverage
- 1 outlet· first seen 2026-09-11 01:00 UTC
- Priority
- 41/100Source tier, category, exploitation and corroboration. Not a risk score for your environment.
Coverage
One outlet has carried this so far.
2026-09-11 01:00 UTC
Related stories
- OpenAI Agents Linked to RubyGems Campaign That Gained RCE on RubyDoc Servers
The Hacker News · 2026-09-12
- AI Hallucinations Trigger Malware Flag on 1M+ Active User Extension
Hacker News · 2026-09-12
- Researchers say OpenAI agents were behind May hacking campaign targeting RubyGems
CyberScoop · 2026-09-12
- GitLab security advisory (AV26-917)
Canadian Centre for Cyber Security · 2026-09-11
- n8n security advisory (AV26-916)
Canadian Centre for Cyber Security · 2026-09-11