Hundreds of Android banking and crypto apps hit by dangerous new Rokarolla malware


  • Zimperium discovers new Android banking Trojan “Rokarolla” targeting 217 banking/crypto apps.
  • Distributed through fraudulent sites, third-party stores and social networks; the dropper impersonates Google Play Protect
  • Steals credentials via invisible overlays, hides and adds additional spying features like keylogging, call blocking and screen recording.

Zimperium security researchers have discovered Rokarolla, a powerful Android banking Trojan capable of stealing login credentials and other valuable information from over 200 banking and crypto apps.

Rokarolla is distributed through standalone (spoofed) websites, third-party app stores and social networks. It was not found on the Google Play Store or other official Android repositories.

Leave a Comment

Your email address will not be published. Required fields are marked *

Scroll to Top