RatHat Android Malware Uses AI to Target Banking Credentials in Real Time

2026-09-22T20:51:36Z•98afad6f01d99e0ae201462a41a52d0b8e5330e22073d7a6e932fd7294db2f9a
AI-assisted malwareAndroid malwareC# compilationChainScript RATChina-linked threat actorClickFixFamousSparrowLatin AmericaMovieReaperOTP interceptionPolygonPowerShellSparroWockyTASK#STOMPWindows backdoorbanking trojancredential theftcryptocurrency C2 discovery via blockchain symbols.js? nodata exfiltrationdocument theftfake software installersmalwarescheduled tasksscreen capturetorrent malware

What happened

HackRead RSS feed reporting multiple cybersecurity developments, including Android banking malware RatHat using generative AI and OTP interception, MovieReaper malware distributed through compromised torrents, the TASK#STOMP Windows backdoor enabling document theft and persistence, China-linked FamousSparrow deploying the SparroWocky backdoor against Latin American governments, ChainScript RAT campaigns using fake software installers and ClickFix, and ongoing Clop ransomware activity. The feed also contains non-threat technology and cryptocurrency articles.

Why it matters

A reviewed impact interpretation has not been published for this record.

Evidence and limitations

Source ID
hackread
Record identifier
98afad6f01d99e0ae201462a41a52d0b8e5330e22073d7a6e932fd7294db2f9a
Enrichment time
2026-09-22T20:51:36Z
AI-assisted enrichment
Yes

This record may overlap with other records. Its enrichment can be incomplete or wrong, and machine assistance was used. Validate consequential decisions against the linked source and your own environment.