BeatBanker Android Trojan Uses Silent Audio Loop to Steal Crypto

2026-03-11T20:51:45Z6477ae3c33579e7aaea115f34a60db65995d09e205b5358d84fe75cdeeafd1e6
.NETAndroid trojanBeatBankerBlackSantaCal AIChina-linked actorsHR targetingLazarusMicrosoft Patch TuesdayMyFitnessPal breachPlugXSQL ServerSalesforce dataShinyHuntersWindowsbackdoorbanking trojancredential theftcrypto theftdata breachdeepfake social engineering','ROME AI','cryptomining','incident‑fake CVsilent audio loopsocial engineeringzero-day

What happened

This collection highlights multiple active and emergent threats: a new BeatBanker Android banking/crypto Trojan that abuses a silent audio loop to remain active and steal crypto wallets, banking data and credentials; BlackSanta malware campaigns targeting HR via fake CV/C downloads to bypass recruitment workflows; nation‑state and espionage activity (PlugX backdoor campaigns against Qatar, and Lazarus using deepfake LinkedIn lures); and high‑impact data incidents (alleged Cal AI/MyFitnessPal breach of ~3M users and ShinyHunters’ Salesforce data extortion). Microsoft’s March Patch Tuesday fixes

Why it matters

A reviewed impact interpretation has not been published for this record.

Evidence and limitations

Source ID
hackread
Record identifier
6477ae3c33579e7aaea115f34a60db65995d09e205b5358d84fe75cdeeafd1e6
Enrichment time
2026-03-11T20:51:45Z
AI-assisted enrichment
Yes

This record may overlap with other records. Its enrichment can be incomplete or wrong, and machine assistance was used. Validate consequential decisions against the linked source and your own environment.