Close Menu
GeekBlog

    Subscribe to Updates

    Get the latest creative news from FooBar about art, design and business.

    What's Hot

    Petlibro Discount Codes and Deals: Save Up to 50%

    January 17, 2026

    Rackspace customers grapple with “devastating” email hosting price hike

    January 17, 2026

    AI cloud startup Runpod hits $120M in ARR — and it started with a Reddit post  

    January 17, 2026
    Facebook X (Twitter) Instagram Threads
    GeekBlog
    • Home
    • Mobile
    • Tech News
    • Blog
    • How-To Guides
    • AI & Software
    Facebook
    GeekBlog
    Home»AI & Software»New DoubleTrouble banking trojan spreads via Discord – so be on your guard
    AI & Software

    New DoubleTrouble banking trojan spreads via Discord – so be on your guard

    Michael ComaousBy Michael ComaousAugust 1, 20252 Mins Read
    Share Facebook Twitter Pinterest LinkedIn Tumblr Email Copy Link
    Users display warnings about the use of artificial intelligence (AI), access to malicious software or threats to online hackers. computer cyber security Warning concept or tech scam.
    Share
    Facebook Twitter LinkedIn Pinterest Email Copy Link

    • DoubleTrouble malware is now hosted on Discord
    • The malware still poses as a European bank, so users beware
    • It comes with screen recording, “advanced” keylogging, and new UI overlay capabilities

    Infamous Android banking trojan DoubleTrouble is now being distributed through Discord-hosted APKs, researchers have said, warning users of a “disturbing trend” towards social media platforms being used as delivery channels for malware.

    DoubleTrouble is a well-known banking trojan, named for its ability to hinder static analysis by assigning “nonsensical two-word combinations” to its methods and class names.

    In its early days, the malware was distributed via spoofed websites of European banks, and contained basic functionalities such as overlays to steal banking credentials, the ability to capture lock screen information, and keylogging.


    You may like

    A growing mobile threat

    However, new findings from Zimperium’s zLabs security team claim the malware evolved, not just in its infostealing capabilities, but also in how it is being distributed.

    The recently observed variants also come with screen recording, “advanced” keylogging, and new UI overlay capabilities designed to steal credentials and manipulate infected devices.

    As for delivery, DoubleTrouble still runs bogus websites, but the malware itself is hosted within Discord channels.

    Once the app is installed, it deploys the actual malware in the form of an extension, or an add-on. It also uses the Google Play icon to hide in plain sight and appear trustworthy.

    Sign up to the TechRadar Pro newsletter to get all the top news, opinion, features and guidance your business needs to succeed!

    The final step is to ask for Accessibility Services permissions, which grants it the ability to steal all the necessary information. This is also the usual red flag for Android-borne malware and should always raise suspicion with users.

    “As attackers shift to mobile-first strategies and use dynamic delivery methods like Discord to evade traditional defenses, organizations need real-time, on-device protection,” said Kern Smith, VP of Solutions Engineering at Zimperium.

    “DoubleTrouble is a stark reminder that mobile threats are growing more evasive and more dangerous, targeting everything from banking credentials to cryptocurrency wallets.”

    As usual, the best way to defend against this type of attacks is to only download apps from official repositories, and to keep the device protected with Play Protect and Android security solutions.

    You might also like

    banking Discord DoubleTrouble guard spreads trojan
    Share. Facebook Twitter Pinterest LinkedIn Tumblr Telegram Email Copy Link
    Previous ArticleMarshall Major V Headphones Are at Their Lowest Price Ever Right Now
    Next Article GIF Keyboard Missing From Your iPhone? Here’s Where To Find It
    Michael Comaous
    • Website

    Michael Comaous is a dedicated professional with a passion for technology, innovation, and creative problem-solving. Over the years, he has built experience across multiple industries, combining strategic thinking with hands-on expertise to deliver meaningful results. Michael is known for his curiosity, attention to detail, and ability to explain complex topics in a clear and approachable way. Whether he’s working on new projects, writing, or collaborating with others, he brings energy and a forward-thinking mindset to everything he does.

    Related Posts

    2 Mins Read

    Salesforce CEO says National Guard should patrol San Francisco — stunning his own PR team

    3 Mins Read

    Discord confirms 70,000 government IDs exposed in customer support data breach

    3 Mins Read

    AWS launches Quick Suite to challenge Microsoft and Google in the AI workspace race

    3 Mins Read

    Discord says third-party breach exposed 70,000 ID photos

    2 Mins Read

    Discord data breach affects at least 70,000 users

    3 Mins Read

    Trump sends 200 Texas Guard to Illinois amid lawsuit

    Top Posts

    The Mesh Router Placement Strategy That Finally Gave Me Full Home Coverage

    August 4, 2025292 Views

    Past Wordle answers – all solutions so far, alphabetical and by date

    August 1, 2025171 Views

    Grok rolls out AI video creator for X with bonus “spicy” mode

    August 7, 2025123 Views
    Stay In Touch
    • Facebook

    Subscribe to Updates

    Get the latest tech news from FooBar about tech, design and biz.

    Most Popular

    The Mesh Router Placement Strategy That Finally Gave Me Full Home Coverage

    August 4, 2025292 Views

    Past Wordle answers – all solutions so far, alphabetical and by date

    August 1, 2025171 Views

    Grok rolls out AI video creator for X with bonus “spicy” mode

    August 7, 2025123 Views
    Our Picks

    Petlibro Discount Codes and Deals: Save Up to 50%

    January 17, 2026

    Rackspace customers grapple with “devastating” email hosting price hike

    January 17, 2026

    AI cloud startup Runpod hits $120M in ARR — and it started with a Reddit post  

    January 17, 2026

    Subscribe to Updates

    Get the latest creative news from FooBar about art, design and business.

    Facebook
    • About Us
    • Contact us
    • Privacy Policy
    • Disclaimer
    • Terms and Conditions
    © 2026 GeekBlog

    Type above and press Enter to search. Press Esc to cancel.

    Ad Blocker Enabled!
    Ad Blocker Enabled!
    Our website is made possible by displaying online advertisements to our visitors. Please support us by disabling your Ad Blocker.