BeatBanker Android Trojan Uses Silent Audio Loop to Steal Crypto
2026-03-11T20:51:45Z•6477ae3c33579e7aaea115f34a60db65995d09e205b5358d84fe75cdeeafd1e6
.NETAndroid trojanBeatBankerBlackSantaCal AIChina-linked actorsHR targetingLazarusMicrosoft Patch TuesdayMyFitnessPal breachPlugXSQL ServerSalesforce dataShinyHuntersWindowsbackdoorbanking trojancredential theftcrypto theftdata breachdeepfake social engineering','ROME AI','cryptomining','incident‑fake CVsilent audio loopsocial engineeringzero-day
What happened
This collection highlights multiple active and emergent threats: a new BeatBanker Android banking/crypto Trojan that abuses a silent audio loop to remain active and steal crypto wallets, banking data and credentials; BlackSanta malware campaigns targeting HR via fake CV/C downloads to bypass recruitment workflows; nation‑state and espionage activity (PlugX backdoor campaigns against Qatar, and Lazarus using deepfake LinkedIn lures); and high‑impact data incidents (alleged Cal AI/MyFitnessPal breach of ~3M users and ShinyHunters’ Salesforce data extortion). Microsoft’s March Patch Tuesday fixes
Why it matters
A reviewed impact interpretation has not been published for this record.
Evidence and limitations
- Source ID
- hackread
- Record identifier
- 6477ae3c33579e7aaea115f34a60db65995d09e205b5358d84fe75cdeeafd1e6
- Enrichment time
- 2026-03-11T20:51:45Z
- AI-assisted enrichment
- Yes
This record may overlap with other records. Its enrichment can be incomplete or wrong, and machine assistance was used. Validate consequential decisions against the linked source and your own environment.