Skip to content

Malware

FluHorse

According to Check Point, this malware features several malicious Android applications that mimic legitimate applications, most of which have more than 1,000,000 installs.

FluHorse is a Android malware family.

Background

Check Point reports that this malware consists of multiple rogue Android apps impersonating legitimate ones, many of which boast over 1,000,000 installs. These fake apps harvest victims' credentials and Two-Factor Authentication (2FA) codes. FluHorse focuses on various sectors of Eastern Asian markets and spreads through email, with some of the initial-stage messages purporting to come from high-profile organizations. Because it can stay hidden for months, it represents a persistent, dangerous, and difficult-to-detect threat.


Source: Malpedia (Fraunhofer FKIE).