BTC $71,807
2026 Bull Run Is Building Start trading with 5% OFF all fees
Sign Up Now
BTC $71,807
Bull Run 2026 | 5% Off Fees Open your Binance account today
Sign Up

New Android Rokarolla Trojan Targets 217 Banking Apps

Rokarolla Android Trojan Hijacks 217 Banking Apps Using Overlay Attacks

  • A new Android banking trojan named Rokarolla targets 217 banking and cryptocurrency applications.
  • It uses sophisticated overlay attacks and 137 remote commands to gain near-total control of infected devices, stealing login credentials and redirecting cryptocurrency payments.
  • The malware disables Google Play Protect and spreads through malicious websites posing as popular apps like TikTok and Chrome.

Security researchers at Zimperium‘s zLabs documented a new Android banking trojan in June 2026, according to their report. This malware, named Rokarolla, is designed to target 217 banking and cryptocurrency apps using 137 remote commands for complete device control. It spreads via malicious websites disguised as well-known applications.

- Advertisement -

Once installed, a dropper disguised as Google Play Protect grants the malware Accessibility permissions. Consequently, Rokarolla can then disable Play Protect and execute its extensive attack toolkit. The theft primarily occurs through HTML overlay attacks on legitimate financial apps.

For each targeted app, the malware downloads a fake login page from its server. When a victim opens the real app, this overlay captures everything typed, including card details. A separate overlay mimics the Android lock screen to steal the device’s PIN, pattern, or password.

The trojan also reads and sends SMS messages, allowing it to intercept one-time banking codes. Meanwhile, it rewrites the clipboard to swap cryptocurrency wallet addresses and redirect payments. For surveillance, it uses Accessibility services to take silent screenshots instead of triggering visible recording prompts.

The malware’s capabilities, detailed in the company’s GitHub repository, outnumber earlier threats like the HOOK trojan. There is no software patch, as this is malware, not a product flaw. Therefore, standard defenses like installing apps only from Google Play and scrutinizing Accessibility requests are critical.

- Advertisement -

✅ Follow BITNEWSBOT on Telegram, Facebook, LinkedIn, X.com, and Google News for instant updates.

Previous Articles:

- Advertisement -
Ad
Altseason Is Loading. Don't watch from the sidelines.
SOL $90.51
DOGE $0.0963
LINK $9.02
SUI $1.00
5% off fees when you sign up
Start Trading
Ad
Pay Less on Every Trade. For Life.
$10K/mo volume Save $60/yr
$50K/mo volume Save $300/yr
$100K/mo volume Save $600/yr
5% off all trading fees when you sign up
Claim Your Discount

Latest News

Bitcoin Dips to $66k Despite Stock Market Gains

Bitcoin cooled its recent rebound on Tuesday, dropping to around $66,000 as the stock...

3 Cryptocurrencies Near All-Time Highs As Market Recovers

Bitcoin recovered to $67,000 on June 15, 2026, following a dip below $60,000.Hyperliquid (HYPE)...

Hype ETFs Near $172M Inflows Defying Bitcoin ETF Exodus

Cumulative inflows for three new Hyperliquid ETFs reached nearly $172 million in roughly a...

Robinhood Lays Off 10% Staff Amid Record Trading

Robinhood Markets is cutting 10% of its full-time staff in a "proactive operational move"...

Saylor: Bitcoin doesn’t need staking or protocol yield

MicroStrategy executive chairman Michael Saylor argues Bitcoin does not need staking or yield mechanisms...

Must Read

Top 5 Best Crypto Faucets To Earn Free Crypto This Year

QUICK LINKSWhat Are Crypto Faucets and How Do They Work?How Do Crypto Faucets Make Money?What to Expect: Realistic EarningsThe Best Crypto Faucets of 2025:...
Ad
Altseason Is Loading. These 4 coins are trending right now.
SOL $92.12
DOGE $0.0950
LINK $9.02
SUI $1.02
5% off spot fees when you sign up
Start Trading