Gridware Logo

New MMRat Trojan Targeting Android Users

By Ahmed Khanji Updated 16 February 2024 2 min read

in 𝕏
New MMRat Trojan Targeting Android Users

How to Guard Against the MMRat Trojan on Your Android Phone

If you’re an Android user, be cautious. The new MMRat Trojan targets your bank accounts with the intent of committing bank fraud. Fortunately, there are measures you can take to protect yourself.

What Does MMRat Do, Anyway?

Here’s a breakdown of how MMRat works:

  1. Users see an enticing ad for a new game or tool while browsing online.
  2. Users are Redirected to a web page mimicking a legitimate app store.
  3. Users download what they think is a legitimate app, but it contains the MMRat Trojan.
  4. installation, MMRat asks for device permissions like reading texts and contacts.
  5. The Trojan collects sensitive bank information and login credentials discreetly.
  6. The collected data is securely sent to the attacker’s remote server.
  7. To avoid detection, MMRat uninstalls itself from the device.
  8. Attackers use the gathered data to commit bank fraud and other Credential Theft

How Does It Get Around?

MMRat mostly spreads through fake app stores. You might also get it from phishing texts or emails that trick you into downloading something. Always be careful where you download apps from.

Tips for Staying Safe

  • Stick to downloading apps from places you trust, like Google Play or Apple’s App Store.
  • Always make sure your phone’s software is current. Updates often fix security holes.
  • Be careful about what permissions you give to new apps. Ask yourself why a basic game needs to read your emails.
  • Get a reliable antivirus app to check your phone regularly.
  • Don’t share your personal or financial details unless you have to, and only with trusted sources.

Explore Other Cyber Threats

For those interested in broadening their understanding of cybersecurity threats, we offer in-depth articles on a variety of topics. You can learn about, Zero-Day Attacks, Supply Chain Attacks, Ransomware, Security Vulnerabilities, Business Email Compromise, and IoT Attacks. Each guide provides a comprehensive overview, including definitions, impacts on businesses, signs to watch for, the worst incidents, and how our services can help you stay protected.

Ahmed Khanji

Ahmed Khanji

CEO, Gridware

Ahmed Khanji is the CEO of Gridware, a leading cybersecurity consultancy based in Sydney, Australia. He is recognised for his insights into offensive security and emerging technologies such as blockchain, and often contributes to broader cybersecurity conversations across the country. With an extensive background as a security advisor to major Australian enterprises, Ahmed helps organisations navigate the evolving threat landscape with clarity and confidence.