Security researchers have discovered a new Android banking trojan they named Brokewell that can capture every event on the device
The malware is delivered through a fake Google Chrome update that is shown while using the web browser
Researchers at fraud risk company ThreatFabric found Brokewell after investigating a fake Chrome update page that dropped a payload, a common method for tricking unsuspecting users into installing malware.
https://www.threatfabric.com/blogs/brokewell-do-not-go-broke-by-new-banking-malware
Interestingly, this loader can bypass the restrictions Google introduced in Android 13 and later to prevent abuse of Accessibility Service for side-loaded apps (APKs).
As highlighted with Brokewell, loaders that bypass restrictions to prevent granting Accessibility Service access to APKs downloaded from shady sources have now become common and widely deployed in the wild.
Advice >> ensure that Play Protect is active on your device at all times.....