{"id":26232,"date":"2019-03-20T13:35:04","date_gmt":"2019-03-20T13:35:04","guid":{"rendered":"https:\/\/packetstormsecurity.com\/news\/view\/29953\/Bank-Hackers-Team-Up-To-Spread-Financial-Trojans-Worldwide.html"},"modified":"2019-03-20T13:35:04","modified_gmt":"2019-03-20T13:35:04","slug":"bank-hackers-team-up-to-spread-financial-trojans-worldwide","status":"publish","type":"post","link":"https:\/\/www.threatshub.org\/blog\/bank-hackers-team-up-to-spread-financial-trojans-worldwide\/","title":{"rendered":"Bank Hackers Team Up To Spread Financial Trojans Worldwide"},"content":{"rendered":"<p>Banking Trojans are popular in cybercriminal schemes given the valuable data and financial service credentials they can steal in successful cyberattacks.<\/p>\n<p>Banks find themselves a constant target for relentless attacks against their apps and infrastructure. Their names, too, are abused by threat actors which use them in phishing campaigns and through copycat malicious domains designed to dupe customers into handing over their account credentials.<\/p>\n<p>Banking Trojans are considered one of the top threats to the enterprise today. In 2018 alone, <a href=\"https:\/\/www.zdnet.com\/article\/banking-trojan-attacks-flood-the-enterprise-sector\/\" target=\"_blank\">Kaspersky Lab recorded<\/a> roughly 900,000 financial malware-based attacks against users in 2018 &#8212; an increase of 16 percent in comparison to 767,000 attacks in the previous year.<\/p>\n<p>The names of such malware may be familiar. <a href=\"https:\/\/www.zdnet.com\/article\/new-father-of-zeus-kronos-malware-variant-exploits-office-bug-to-hijack-your-bank-account\/\" target=\"_blank\">Zeus<\/a>, <a href=\"https:\/\/www.zdnet.com\/article\/this-malware-uses-debt-to-prey-on-banking-victims\/\" target=\"_blank\">Redaman<\/a>, <a href=\"https:\/\/www.zdnet.com\/article\/trojan-malware-campaign-expands-with-attacks-against-new-banks\/\" target=\"_blank\">BackSwap<\/a>, <a href=\"https:\/\/www.zdnet.com\/article\/emotet-trojan-tweaks-tactics-in-fresh-attack-wave\/\" target=\"_blank\">Emotet<\/a>, <a href=\"https:\/\/www.zdnet.com\/article\/this-banking-malware-just-returned-with-new-sneaky-tricks-to-steal-you-data\/\" target=\"_blank\">Gozi<\/a>, and <a href=\"https:\/\/www.zdnet.com\/article\/this-remote-access-trojan-just-popped-up-on-malwares-most-wanted-list\/\" target=\"_blank\">Ramnit<\/a> are only some of the Trojan families which have gained prominence in the cybercriminal world, however, the operators of campaigns using banking Trojans are constantly cajoling for space and territory.<\/p>\n<p>At least, this used to be the case. According to IBM&#8217;s Global Executive Security Advisor Limor Kessem and the IBM X-Force cybersecurity team, the top banking malware operators <a href=\"https:\/\/securityintelligence.com\/the-business-of-organized-cybercrime-rising-Intergang-collaboration-in-2018\/\" target=\"_blank\" rel=\"noopener noreferrer\">are now working together<\/a> to distribute their malware.<\/p>\n<p>On Wednesday, Kessem revealed new research on the cooperative trend, which builds upon the financial malware trends discussed in the latest IBM X-Force Threat Intelligence Index.<\/p>\n<p>Trickbot, Gozi, Ramnit, and IcedID were the most active banking Trojans in 2018, and while other forms of malware have grown in popularity, it is the most active &#8212; and prevalent &#8212; forms of financial malware which are now being spread through cybercriminal partnerships.<\/p>\n<p><span class=\"img aspect-set\"><img decoding=\"async\" src=\"https:\/\/zdnet1.cbsistatic.com\/hub\/i\/2019\/03\/20\/8ff44b16-7b4b-44a7-ad84-d57723556bba\/c99bf57862c2edf91e7b3d16f5476254\/screenshot-2019-03-20-at-08-33-25.png\" class alt=\"screenshot-2019-03-20-at-08-33-25.png\"><\/span><\/p>\n<section class=\"sharethrough-top\" data-component=\"medusaContentRecommendation\" data-medusa-content-recommendation-options=\"{&quot;promo&quot;:&quot;promo_ZD_recommendation_sharethrough_top_in_article_desktop&quot;,&quot;spot&quot;:&quot;dfp-in-article&quot;}\">\n<\/section>\n<p>The cybersecurity researchers say that the list is &#8220;populated by organized cybercrime gangs that have ties to yet other cybercrime gangs, each doing its part to feed the perpetual supply chain of a digital financial crime economy.&#8221;<\/p>\n<p>&#8220;The banking Trojan arena is dominated by groups from the same part of the world and by people who know each other and collaborate to continue orchestrating high-volume wire fraud,&#8221; Kessem added.<\/p>\n<p>Trickbot is <a href=\"https:\/\/www.zdnet.com\/article\/old-trickbot-trojan-taught-new-tricks\/\" target=\"_blank\">one of the major players<\/a> in the financial Trojan space. The Russian cybercriminals behind the malware, who target banks and wealth firms managing high-value accounts, have recently diversified into ransomware as part of a wider botnet strategy and are now working with gang members from IcedID.<\/p>\n<p>First discovered in 2017, IcedID uses web injection attacks to compromise online payment portals and also indulges in the typical bait-and-switch method for redirecting banking customers to malicious domains.<\/p>\n<p>While this malware isn&#8217;t particularly memorable as a banking Trojan, a recent shift in its deployment is. IcedID <a href=\"https:\/\/www.trendmicro.com\/vinfo\/es\/security\/news\/cybercrime-and-digital-threats\/icedid-banking-trojan-targets-us-financial-institutions\" target=\"_blank\" rel=\"noopener noreferrer\">used to be dropped<\/a> by the <a href=\"https:\/\/www.zdnet.com\/article\/emotet-trojan-tweaks-tactics-in-fresh-attack-wave\/\" target=\"_blank\">Emotet Trojan<\/a>, but this changed to TrickBot in May 2018.<\/p>\n<p>Three months later, it became clear that IcedID had also received a number of upgrades to perform more like TrickBot, including the reduction in the size of its binary file and plugins being fetched and loaded on demand, rather than being an intrinsic part of the Trojan&#8217;s modules.<\/p>\n<p>&#8220;Although malware authors do sometimes copy from one another, our research indicates these modifications were not coincidental,&#8221; IBM says. &#8220;Even if we only looked at the fact that TrickBot and IcedID fetch one another into infected devices, that would be indication enough that these Trojans are operated by teams that work together.&#8221;<\/p>\n<p><strong>See also:&nbsp;<\/strong><a href=\"https:\/\/www.zdnet.com\/article\/facebook-debuts-ai-tool-to-tackle-revenge-porn\/\" target=\"_blank\">Facebook debuts AI tool to tackle revenge porn<\/a><\/p>\n<p>IBM also speculates that a vague partnership between the two groups may have begun years ago, and potentially during the years when Dyre and Neverquest malware samples were making the rounds pre-2015. Trickbot is considered the <a href=\"https:\/\/www.zdnet.com\/article\/dyre-successor-trickbot-attacks-australian-banks\/\" target=\"_blank\">protege of Dyre<\/a>, whilst Neverquest vanished following the arrest of a member of the group behind it. IcedID came onto the scene soon after.<\/p>\n<p>Gozi, too, is <a href=\"https:\/\/www.zdnet.com\/article\/security-researchers-take-down-100000-malware-sites-over-the-last-ten-months\/\" target=\"_blank\">another key player<\/a> in the banking malware industry and has been active for over a decade. First spotted in 2007, Gozi is constantly evolving and the leak of its source code in 2010 gave rise to a number of Trojans that are active today.<\/p>\n<p>The malware is now in two major forms, v.2, and v.3, of which the former variant targets global players and the latter focuses on banks in Australia and New Zealand through macro-based malicious attachments sent via phishing campaigns.<\/p>\n<p>In some countries, such as Japan, the operators of Gozi are collaborating <a href=\"https:\/\/threatvector.cylance.com\/en_us\/home\/threat-spotlight-urlzone-malware-campaigns-targeting-japan.html\" target=\"_blank\" rel=\"noopener noreferrer\">with URLZone<\/a>. This form of malware specializes in process hollowing and disguises itself as legitimate computing processes to lurk undetected on a victim&#8217;s machine.&nbsp;<\/p>\n<p>In a 2018 campaign, URLZone dropped both the Cutwail botnet and Gozi, which together are able to enslave devices, create persistent backdoors, and steal data.<\/p>\n<p><strong>TechRepublic:&nbsp;<\/strong><a href=\"https:\/\/www.techrepublic.com\/article\/how-to-prevent-spear-phishing-attacks-8-tips-for-your-business\/\" target=\"_blank\" rel=\"noopener noreferrer\">How to prevent spear phishing attacks: 8 tips for your business<\/a><\/p>\n<p>The operators of Ramnit, too, appear to find value in collaboration. Active since 2010, Ramnit started out using worm-like techniques to infect PCs, networks, and removable drives before evolving into a modular banking Trojan which is now spread through exploit kids including Angler and RIG.<\/p>\n<p>Ramnit tends to focus on victims in the UK, Canada, and Japan, and in 2018, re-emerged after a law enforcement botnet takedown with a new partner in tow: Ngioweb, a multifunctional proxy server which uses multiple layers of encryption.<\/p>\n<p><strong>CNET:&nbsp;<\/strong><a href=\"https:\/\/www.cnet.com\/news\/facial-recognition-overkill-how-deputies-solved-a-12-shoplifting-case\/\" target=\"_blank\" rel=\"noopener noreferrer\">Facial recognition overkill: How deputies cracked a $12 shoplifting case<\/a><\/p>\n<p>A <a href=\"https:\/\/exchange.xforce.ibmcloud.com\/collection\/Ramnits-Network-of-Proxy-Servers-f853c5bf026ba4a0cd50d6845cb9d501\" target=\"_blank\" rel=\"noopener noreferrer\">2018 campaign<\/a> between the pair was able to infect approximately 100,000 devices in only two months. During the scheme, Ramnit went back to its worm-like roots and acted as a first-stage infection platform to create a proxy botnet for Ngioweb.&nbsp;<\/p>\n<p>IBM believes this partnership &#8212; albeit a short-lived one &#8212; was designed in the hopes of creating a botnet of a size comparable to the old <a href=\"https:\/\/www.zdnet.com\/article\/gameover-zeus-botnet-seized-two-week-window-to-protect-yourself-say-authorities\/\" target=\"_blank\">Gameover Zeus botnet<\/a>.<\/p>\n<p>&#8220;While previous years saw gangs operate as adversaries, occupying different turfs, or even attack one another&#8217;s malware, 2018 connects the major cybercrime gangs together in explicit collaboration,&#8221; IBM says. &#8220;This trend is a negative sign to the joining of forces between botnet operators, revealing the resilience factor in these nefarious operations over time.&#8221;<\/p>\n<h3>Previous and related coverage<\/h3>\n<p>READ MORE <a href=\"https:\/\/packetstormsecurity.com\/news\/view\/29953\/Bank-Hackers-Team-Up-To-Spread-Financial-Trojans-Worldwide.html\">HERE<\/a><\/p>\n","protected":false},"excerpt":{"rendered":"<p>READ MORE HERE&#8230;<\/p>\n","protected":false},"author":2,"featured_media":26233,"comment_status":"closed","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"colormag_page_layout":"default_layout","footnotes":""},"categories":[277],"tags":[6178],"class_list":["post-26232","post","type-post","status-publish","format-standard","has-post-thumbnail","hentry","category-cybersecurity-blogs","tag-headlinehackermalwarebanktrojancybercrimefraud"],"yoast_head":"<!-- This site is optimized with the Yoast SEO plugin v27.7 - https:\/\/yoast.com\/product\/yoast-seo-wordpress\/ -->\n<title>Bank Hackers Team Up To Spread Financial Trojans Worldwide 2026 | ThreatsHub Cybersecurity News<\/title>\n<meta name=\"description\" content=\"ThreatsHub Cybersecurity News | ThreatsHub.org | Cloud Security &amp; Cyber Threats Analysis Hub. 100% Free OSINT Threat Intelligent and Cybersecurity News.\" \/>\n<meta name=\"robots\" content=\"index, follow, max-snippet:-1, max-image-preview:large, max-video-preview:-1\" \/>\n<link rel=\"canonical\" href=\"https:\/\/www.threatshub.org\/blog\/bank-hackers-team-up-to-spread-financial-trojans-worldwide\/\" \/>\n<meta property=\"og:locale\" content=\"en_US\" \/>\n<meta property=\"og:type\" content=\"article\" \/>\n<meta property=\"og:title\" content=\"Bank Hackers Team Up To Spread Financial Trojans Worldwide 2026 | ThreatsHub Cybersecurity News\" \/>\n<meta property=\"og:description\" content=\"ThreatsHub Cybersecurity News | ThreatsHub.org | Cloud Security &amp; Cyber Threats Analysis Hub. 100% Free OSINT Threat Intelligent and Cybersecurity News.\" \/>\n<meta property=\"og:url\" content=\"https:\/\/www.threatshub.org\/blog\/bank-hackers-team-up-to-spread-financial-trojans-worldwide\/\" \/>\n<meta property=\"og:site_name\" content=\"ThreatsHub Cybersecurity News\" \/>\n<meta property=\"article:published_time\" content=\"2019-03-20T13:35:04+00:00\" \/>\n<meta property=\"og:image\" content=\"https:\/\/www.threatshub.org\/blog\/coredata\/uploads\/2019\/03\/bank-hackers-team-up-to-spread-financial-trojans-worldwide.png\" \/>\n\t<meta property=\"og:image:width\" content=\"1002\" \/>\n\t<meta property=\"og:image:height\" content=\"486\" \/>\n\t<meta property=\"og:image:type\" content=\"image\/png\" \/>\n<meta name=\"author\" content=\"TH Author\" \/>\n<meta name=\"twitter:card\" content=\"summary_large_image\" \/>\n<meta name=\"twitter:creator\" content=\"@threatshub\" \/>\n<meta name=\"twitter:site\" content=\"@threatshub\" \/>\n<meta name=\"twitter:label1\" content=\"Written by\" \/>\n\t<meta name=\"twitter:data1\" content=\"TH Author\" \/>\n\t<meta name=\"twitter:label2\" content=\"Est. reading time\" \/>\n\t<meta name=\"twitter:data2\" content=\"5 minutes\" \/>\n<script type=\"application\/ld+json\" class=\"yoast-schema-graph\">{\"@context\":\"https:\\\/\\\/schema.org\",\"@graph\":[{\"@type\":\"Article\",\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/bank-hackers-team-up-to-spread-financial-trojans-worldwide\\\/#article\",\"isPartOf\":{\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/bank-hackers-team-up-to-spread-financial-trojans-worldwide\\\/\"},\"author\":{\"name\":\"TH Author\",\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/#\\\/schema\\\/person\\\/12e0a8671ff89a863584f193e7062476\"},\"headline\":\"Bank Hackers Team Up To Spread Financial Trojans Worldwide\",\"datePublished\":\"2019-03-20T13:35:04+00:00\",\"mainEntityOfPage\":{\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/bank-hackers-team-up-to-spread-financial-trojans-worldwide\\\/\"},\"wordCount\":992,\"publisher\":{\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/#organization\"},\"image\":{\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/bank-hackers-team-up-to-spread-financial-trojans-worldwide\\\/#primaryimage\"},\"thumbnailUrl\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/wp-content\\\/uploads\\\/2019\\\/03\\\/bank-hackers-team-up-to-spread-financial-trojans-worldwide.png\",\"keywords\":[\"headline,hacker,malware,bank,trojan,cybercrime,fraud\"],\"articleSection\":[\"CyberSecurity Blogs\"],\"inLanguage\":\"en-US\"},{\"@type\":\"WebPage\",\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/bank-hackers-team-up-to-spread-financial-trojans-worldwide\\\/\",\"url\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/bank-hackers-team-up-to-spread-financial-trojans-worldwide\\\/\",\"name\":\"Bank Hackers Team Up To Spread Financial Trojans Worldwide 2026 | ThreatsHub Cybersecurity News\",\"isPartOf\":{\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/#website\"},\"primaryImageOfPage\":{\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/bank-hackers-team-up-to-spread-financial-trojans-worldwide\\\/#primaryimage\"},\"image\":{\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/bank-hackers-team-up-to-spread-financial-trojans-worldwide\\\/#primaryimage\"},\"thumbnailUrl\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/wp-content\\\/uploads\\\/2019\\\/03\\\/bank-hackers-team-up-to-spread-financial-trojans-worldwide.png\",\"datePublished\":\"2019-03-20T13:35:04+00:00\",\"description\":\"ThreatsHub Cybersecurity News | ThreatsHub.org | Cloud Security & Cyber Threats Analysis Hub. 100% Free OSINT Threat Intelligent and Cybersecurity News.\",\"breadcrumb\":{\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/bank-hackers-team-up-to-spread-financial-trojans-worldwide\\\/#breadcrumb\"},\"inLanguage\":\"en-US\",\"potentialAction\":[{\"@type\":\"ReadAction\",\"target\":[\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/bank-hackers-team-up-to-spread-financial-trojans-worldwide\\\/\"]}]},{\"@type\":\"ImageObject\",\"inLanguage\":\"en-US\",\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/bank-hackers-team-up-to-spread-financial-trojans-worldwide\\\/#primaryimage\",\"url\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/wp-content\\\/uploads\\\/2019\\\/03\\\/bank-hackers-team-up-to-spread-financial-trojans-worldwide.png\",\"contentUrl\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/wp-content\\\/uploads\\\/2019\\\/03\\\/bank-hackers-team-up-to-spread-financial-trojans-worldwide.png\",\"width\":1002,\"height\":486},{\"@type\":\"BreadcrumbList\",\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/bank-hackers-team-up-to-spread-financial-trojans-worldwide\\\/#breadcrumb\",\"itemListElement\":[{\"@type\":\"ListItem\",\"position\":1,\"name\":\"Home\",\"item\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/\"},{\"@type\":\"ListItem\",\"position\":2,\"name\":\"headline,hacker,malware,bank,trojan,cybercrime,fraud\",\"item\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/tag\\\/headlinehackermalwarebanktrojancybercrimefraud\\\/\"},{\"@type\":\"ListItem\",\"position\":3,\"name\":\"Bank Hackers Team Up To Spread Financial Trojans Worldwide\"}]},{\"@type\":\"WebSite\",\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/#website\",\"url\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/\",\"name\":\"ThreatsHub Cybersecurity News\",\"description\":\"%%focuskw%% Threat Intel \u2013 Threat Intel Services \u2013 CyberIntelligence \u2013 Cyber Threat Intelligence - Threat Intelligence Feeds - Threat Intelligence Reports - CyberSecurity Report \u2013 Cyber Security PDF \u2013 Cybersecurity Trends - Cloud Sandbox \u2013- Threat IntelligencePortal \u2013 Incident Response \u2013 Threat Hunting \u2013 IOC - Yara - Security Operations Center \u2013 SecurityOperation Center \u2013 Security SOC \u2013 SOC Services - Advanced Threat - Threat Detection - TargetedAttack \u2013 APT \u2013 Anti-APT \u2013 Advanced Protection \u2013 Cyber Security Services \u2013 Cybersecurity Services -Threat Intelligence Platform\",\"publisher\":{\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/#organization\"},\"alternateName\":\"Threatshub.org\",\"potentialAction\":[{\"@type\":\"SearchAction\",\"target\":{\"@type\":\"EntryPoint\",\"urlTemplate\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/?s={search_term_string}\"},\"query-input\":{\"@type\":\"PropertyValueSpecification\",\"valueRequired\":true,\"valueName\":\"search_term_string\"}}],\"inLanguage\":\"en-US\"},{\"@type\":\"Organization\",\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/#organization\",\"name\":\"ThreatsHub.org\",\"alternateName\":\"Threatshub.org\",\"url\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/\",\"logo\":{\"@type\":\"ImageObject\",\"inLanguage\":\"en-US\",\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/#\\\/schema\\\/logo\\\/image\\\/\",\"url\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/wp-content\\\/uploads\\\/2025\\\/05\\\/Threatshub_Favicon1.jpg\",\"contentUrl\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/wp-content\\\/uploads\\\/2025\\\/05\\\/Threatshub_Favicon1.jpg\",\"width\":432,\"height\":435,\"caption\":\"ThreatsHub.org\"},\"image\":{\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/#\\\/schema\\\/logo\\\/image\\\/\"},\"sameAs\":[\"https:\\\/\\\/x.com\\\/threatshub\"]},{\"@type\":\"Person\",\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/#\\\/schema\\\/person\\\/12e0a8671ff89a863584f193e7062476\",\"name\":\"TH Author\",\"image\":{\"@type\":\"ImageObject\",\"inLanguage\":\"en-US\",\"@id\":\"https:\\\/\\\/secure.gravatar.com\\\/avatar\\\/066276f086d5155df79c850206a779ad368418a844da0182ce43f9cd5b506c3d?s=96&d=mm&r=g\",\"url\":\"https:\\\/\\\/secure.gravatar.com\\\/avatar\\\/066276f086d5155df79c850206a779ad368418a844da0182ce43f9cd5b506c3d?s=96&d=mm&r=g\",\"contentUrl\":\"https:\\\/\\\/secure.gravatar.com\\\/avatar\\\/066276f086d5155df79c850206a779ad368418a844da0182ce43f9cd5b506c3d?s=96&d=mm&r=g\",\"caption\":\"TH Author\"}}]}<\/script>\n<!-- \/ Yoast SEO plugin. -->","yoast_head_json":{"title":"Bank Hackers Team Up To Spread Financial Trojans Worldwide 2026 | ThreatsHub Cybersecurity News","description":"ThreatsHub Cybersecurity News | ThreatsHub.org | Cloud Security & Cyber Threats Analysis Hub. 100% Free OSINT Threat Intelligent and Cybersecurity News.","robots":{"index":"index","follow":"follow","max-snippet":"max-snippet:-1","max-image-preview":"max-image-preview:large","max-video-preview":"max-video-preview:-1"},"canonical":"https:\/\/www.threatshub.org\/blog\/bank-hackers-team-up-to-spread-financial-trojans-worldwide\/","og_locale":"en_US","og_type":"article","og_title":"Bank Hackers Team Up To Spread Financial Trojans Worldwide 2026 | ThreatsHub Cybersecurity News","og_description":"ThreatsHub Cybersecurity News | ThreatsHub.org | Cloud Security & Cyber Threats Analysis Hub. 100% Free OSINT Threat Intelligent and Cybersecurity News.","og_url":"https:\/\/www.threatshub.org\/blog\/bank-hackers-team-up-to-spread-financial-trojans-worldwide\/","og_site_name":"ThreatsHub Cybersecurity News","article_published_time":"2019-03-20T13:35:04+00:00","og_image":[{"width":1002,"height":486,"url":"https:\/\/www.threatshub.org\/blog\/coredata\/uploads\/2019\/03\/bank-hackers-team-up-to-spread-financial-trojans-worldwide.png","type":"image\/png"}],"author":"TH Author","twitter_card":"summary_large_image","twitter_creator":"@threatshub","twitter_site":"@threatshub","twitter_misc":{"Written by":"TH Author","Est. reading time":"5 minutes"},"schema":{"@context":"https:\/\/schema.org","@graph":[{"@type":"Article","@id":"https:\/\/www.threatshub.org\/blog\/bank-hackers-team-up-to-spread-financial-trojans-worldwide\/#article","isPartOf":{"@id":"https:\/\/www.threatshub.org\/blog\/bank-hackers-team-up-to-spread-financial-trojans-worldwide\/"},"author":{"name":"TH Author","@id":"https:\/\/www.threatshub.org\/blog\/#\/schema\/person\/12e0a8671ff89a863584f193e7062476"},"headline":"Bank Hackers Team Up To Spread Financial Trojans Worldwide","datePublished":"2019-03-20T13:35:04+00:00","mainEntityOfPage":{"@id":"https:\/\/www.threatshub.org\/blog\/bank-hackers-team-up-to-spread-financial-trojans-worldwide\/"},"wordCount":992,"publisher":{"@id":"https:\/\/www.threatshub.org\/blog\/#organization"},"image":{"@id":"https:\/\/www.threatshub.org\/blog\/bank-hackers-team-up-to-spread-financial-trojans-worldwide\/#primaryimage"},"thumbnailUrl":"https:\/\/www.threatshub.org\/blog\/coredata\/uploads\/2019\/03\/bank-hackers-team-up-to-spread-financial-trojans-worldwide.png","keywords":["headline,hacker,malware,bank,trojan,cybercrime,fraud"],"articleSection":["CyberSecurity Blogs"],"inLanguage":"en-US"},{"@type":"WebPage","@id":"https:\/\/www.threatshub.org\/blog\/bank-hackers-team-up-to-spread-financial-trojans-worldwide\/","url":"https:\/\/www.threatshub.org\/blog\/bank-hackers-team-up-to-spread-financial-trojans-worldwide\/","name":"Bank Hackers Team Up To Spread Financial Trojans Worldwide 2026 | ThreatsHub Cybersecurity News","isPartOf":{"@id":"https:\/\/www.threatshub.org\/blog\/#website"},"primaryImageOfPage":{"@id":"https:\/\/www.threatshub.org\/blog\/bank-hackers-team-up-to-spread-financial-trojans-worldwide\/#primaryimage"},"image":{"@id":"https:\/\/www.threatshub.org\/blog\/bank-hackers-team-up-to-spread-financial-trojans-worldwide\/#primaryimage"},"thumbnailUrl":"https:\/\/www.threatshub.org\/blog\/coredata\/uploads\/2019\/03\/bank-hackers-team-up-to-spread-financial-trojans-worldwide.png","datePublished":"2019-03-20T13:35:04+00:00","description":"ThreatsHub Cybersecurity News | ThreatsHub.org | Cloud Security & Cyber Threats Analysis Hub. 100% Free OSINT Threat Intelligent and Cybersecurity News.","breadcrumb":{"@id":"https:\/\/www.threatshub.org\/blog\/bank-hackers-team-up-to-spread-financial-trojans-worldwide\/#breadcrumb"},"inLanguage":"en-US","potentialAction":[{"@type":"ReadAction","target":["https:\/\/www.threatshub.org\/blog\/bank-hackers-team-up-to-spread-financial-trojans-worldwide\/"]}]},{"@type":"ImageObject","inLanguage":"en-US","@id":"https:\/\/www.threatshub.org\/blog\/bank-hackers-team-up-to-spread-financial-trojans-worldwide\/#primaryimage","url":"https:\/\/www.threatshub.org\/blog\/coredata\/uploads\/2019\/03\/bank-hackers-team-up-to-spread-financial-trojans-worldwide.png","contentUrl":"https:\/\/www.threatshub.org\/blog\/coredata\/uploads\/2019\/03\/bank-hackers-team-up-to-spread-financial-trojans-worldwide.png","width":1002,"height":486},{"@type":"BreadcrumbList","@id":"https:\/\/www.threatshub.org\/blog\/bank-hackers-team-up-to-spread-financial-trojans-worldwide\/#breadcrumb","itemListElement":[{"@type":"ListItem","position":1,"name":"Home","item":"https:\/\/www.threatshub.org\/blog\/"},{"@type":"ListItem","position":2,"name":"headline,hacker,malware,bank,trojan,cybercrime,fraud","item":"https:\/\/www.threatshub.org\/blog\/tag\/headlinehackermalwarebanktrojancybercrimefraud\/"},{"@type":"ListItem","position":3,"name":"Bank Hackers Team Up To Spread Financial Trojans Worldwide"}]},{"@type":"WebSite","@id":"https:\/\/www.threatshub.org\/blog\/#website","url":"https:\/\/www.threatshub.org\/blog\/","name":"ThreatsHub Cybersecurity News","description":"%%focuskw%% Threat Intel \u2013 Threat Intel Services \u2013 CyberIntelligence \u2013 Cyber Threat Intelligence - Threat Intelligence Feeds - Threat Intelligence Reports - CyberSecurity Report \u2013 Cyber Security PDF \u2013 Cybersecurity Trends - Cloud Sandbox \u2013- Threat IntelligencePortal \u2013 Incident Response \u2013 Threat Hunting \u2013 IOC - Yara - Security Operations Center \u2013 SecurityOperation Center \u2013 Security SOC \u2013 SOC Services - Advanced Threat - Threat Detection - TargetedAttack \u2013 APT \u2013 Anti-APT \u2013 Advanced Protection \u2013 Cyber Security Services \u2013 Cybersecurity Services -Threat Intelligence Platform","publisher":{"@id":"https:\/\/www.threatshub.org\/blog\/#organization"},"alternateName":"Threatshub.org","potentialAction":[{"@type":"SearchAction","target":{"@type":"EntryPoint","urlTemplate":"https:\/\/www.threatshub.org\/blog\/?s={search_term_string}"},"query-input":{"@type":"PropertyValueSpecification","valueRequired":true,"valueName":"search_term_string"}}],"inLanguage":"en-US"},{"@type":"Organization","@id":"https:\/\/www.threatshub.org\/blog\/#organization","name":"ThreatsHub.org","alternateName":"Threatshub.org","url":"https:\/\/www.threatshub.org\/blog\/","logo":{"@type":"ImageObject","inLanguage":"en-US","@id":"https:\/\/www.threatshub.org\/blog\/#\/schema\/logo\/image\/","url":"https:\/\/www.threatshub.org\/blog\/coredata\/uploads\/2025\/05\/Threatshub_Favicon1.jpg","contentUrl":"https:\/\/www.threatshub.org\/blog\/coredata\/uploads\/2025\/05\/Threatshub_Favicon1.jpg","width":432,"height":435,"caption":"ThreatsHub.org"},"image":{"@id":"https:\/\/www.threatshub.org\/blog\/#\/schema\/logo\/image\/"},"sameAs":["https:\/\/x.com\/threatshub"]},{"@type":"Person","@id":"https:\/\/www.threatshub.org\/blog\/#\/schema\/person\/12e0a8671ff89a863584f193e7062476","name":"TH Author","image":{"@type":"ImageObject","inLanguage":"en-US","@id":"https:\/\/secure.gravatar.com\/avatar\/066276f086d5155df79c850206a779ad368418a844da0182ce43f9cd5b506c3d?s=96&d=mm&r=g","url":"https:\/\/secure.gravatar.com\/avatar\/066276f086d5155df79c850206a779ad368418a844da0182ce43f9cd5b506c3d?s=96&d=mm&r=g","contentUrl":"https:\/\/secure.gravatar.com\/avatar\/066276f086d5155df79c850206a779ad368418a844da0182ce43f9cd5b506c3d?s=96&d=mm&r=g","caption":"TH Author"}}]}},"_links":{"self":[{"href":"https:\/\/www.threatshub.org\/blog\/wp-json\/wp\/v2\/posts\/26232","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/www.threatshub.org\/blog\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/www.threatshub.org\/blog\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/www.threatshub.org\/blog\/wp-json\/wp\/v2\/users\/2"}],"replies":[{"embeddable":true,"href":"https:\/\/www.threatshub.org\/blog\/wp-json\/wp\/v2\/comments?post=26232"}],"version-history":[{"count":0,"href":"https:\/\/www.threatshub.org\/blog\/wp-json\/wp\/v2\/posts\/26232\/revisions"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/www.threatshub.org\/blog\/wp-json\/wp\/v2\/media\/26233"}],"wp:attachment":[{"href":"https:\/\/www.threatshub.org\/blog\/wp-json\/wp\/v2\/media?parent=26232"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/www.threatshub.org\/blog\/wp-json\/wp\/v2\/categories?post=26232"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/www.threatshub.org\/blog\/wp-json\/wp\/v2\/tags?post=26232"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}