{"id":48481,"date":"2025-08-06T16:15:06","date_gmt":"2025-08-06T15:15:06","guid":{"rendered":"https:\/\/www.intelligentcio.com\/apac\/2025\/08\/06\/zimperium-identifies-2400-malware-variants-targeting-logins-and-mfa\/"},"modified":"2026-07-23T12:36:30","modified_gmt":"2026-07-23T11:36:30","slug":"zimperium-identifies-2400-malware-variants-targeting-logins-and-mfa","status":"publish","type":"post","link":"https:\/\/www.intelligentcio.com\/apac\/2025\/08\/06\/zimperium-identifies-2400-malware-variants-targeting-logins-and-mfa\/","title":{"rendered":"Zimperium identifies 2,400+ malware variants targeting logins and MFA"},"content":{"rendered":"\n<p><em>Zimperium, a leader in mobile security, has issued a warning to organisations globally, that mobile\u2011based credential theft is accelerating.<\/em><\/p>\n\n\n\n<p>Zimperium\u2019s global telemetry revealed more than 2,400 variants of mobile malware specifically engineered to steal login credentials and intercept multi\u2011factor authentication (MFA) codes. The attacks are powered by mishing (mobile\u2011focused phishing) campaigns and sideloaded apps that silently harvest access keys from the very devices employees rely on every day.<\/p>\n\n\n\n<p>\u201cMassive breaches are no longer starting on desktops, they\u2019re starting in your pocket,\u201d said Nicol\u00e1s Chiaraviglio, Chief Scientist at Zimperium. \u201cWhat we saw last year is only the beginning. Organisations must take mobile security seriously to stop credential\u2011stealing malware before it compromises enterprise resources.\u201d<\/p>\n\n\n\n<p><strong>Key trends from the past year<\/strong><\/p>\n\n\n\n<ul class=\"wp-block-list\">\n<li>Credential theft was tied to 16% of cyberattacks in 2024, up from 10% in 2023<\/li>\n\n\n\n<li>Attacks spread through mishing campaigns and sideloaded apps, often disguised as legitimate tools<\/li>\n\n\n\n<li>Major hotspots include Southeast Asia, but detections are global in scope<\/li>\n\n\n\n<li>Targeted industries: finance, retail and software, where stolen credentials have immediate value<br><\/li>\n<\/ul>\n\n\n\n<p>Families like <em>TriaStealer<\/em>, <em>TrickMo<\/em>, <em>AppLite<\/em>, <em>Triada<\/em>, and <em>SMS Stealer<\/em> show how attackers exploit mobile devices &#8211; intercepting one\u2011time passwords, hijacking messaging apps, and exfiltrating sensitive data without detection.<\/p>\n\n\n\n<p>Chiaraviglio added, \u201cEnterprises can no longer treat mobile as secondary in their security strategies. If your mobile defenses aren\u2019t proactive and real\u2011time, you\u2019re leaving the keys to your business exposed.\u201d<\/p>\n","protected":false},"excerpt":{"rendered":"<p>Zimperium, a leader in mobile security, has issued a warning to organisations globally, that mobile\u2011based credential theft is accelerating. Zimperium\u2019s global telemetry revealed more than 2,400 variants of mobile malware specifically engineered to steal login credentials and intercept multi\u2011factor authentication (MFA) codes. The attacks are powered by mishing (mobile\u2011focused phishing) campaigns and sideloaded apps that [&hellip;]<\/p>\n","protected":false},"author":4017,"featured_media":48489,"comment_status":"closed","ping_status":"closed","sticky":false,"template":"","format":"standard","meta":{"_acf_changed":false,"footnotes":""},"categories":[4598,7027,1463,3559,4552,3571,4599,34,1659,42],"tags":[9127,5460,9128,9129,9130,9131,9132,742,9133,2083,9134,9135,9136,9137,9138,9139,9140,9141,6628],"class_list":["post-48481","post","type-post","status-publish","format-standard","has-post-thumbnail","hentry","category-africa","category-intelligent-technologies-ai","category-apac","category-cybersecurity","category-europe","category-latam","category-middle-east","category-mobile","category-north-america","category-industry-verticals-telecom","tag-applite","tag-cybersecurity-trends","tag-enterprise-mobile-security","tag-finance-cybersecurity","tag-mfa-security","tag-mishing","tag-mobile-credential-theft","tag-mobile-malware","tag-mobile-phishing","tag-mobile-security","tag-proactive-mobile-defense","tag-retail-security","tag-security-threats-2024","tag-sideloaded-apps","tag-sms-stealer","tag-triada","tag-triastealer","tag-trickmo","tag-zimperium"],"acf":[],"publishpress_future_workflow_manual_trigger":{"enabledWorkflows":[]},"_links":{"self":[{"href":"https:\/\/www.intelligentcio.com\/apac\/wp-json\/wp\/v2\/posts\/48481","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/www.intelligentcio.com\/apac\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/www.intelligentcio.com\/apac\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/www.intelligentcio.com\/apac\/wp-json\/wp\/v2\/users\/4017"}],"replies":[{"embeddable":true,"href":"https:\/\/www.intelligentcio.com\/apac\/wp-json\/wp\/v2\/comments?post=48481"}],"version-history":[{"count":1,"href":"https:\/\/www.intelligentcio.com\/apac\/wp-json\/wp\/v2\/posts\/48481\/revisions"}],"predecessor-version":[{"id":48483,"href":"https:\/\/www.intelligentcio.com\/apac\/wp-json\/wp\/v2\/posts\/48481\/revisions\/48483"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/www.intelligentcio.com\/apac\/wp-json\/wp\/v2\/media\/48489"}],"wp:attachment":[{"href":"https:\/\/www.intelligentcio.com\/apac\/wp-json\/wp\/v2\/media?parent=48481"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/www.intelligentcio.com\/apac\/wp-json\/wp\/v2\/categories?post=48481"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/www.intelligentcio.com\/apac\/wp-json\/wp\/v2\/tags?post=48481"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}