"FayboyPanel" Malware Is Stealing Money From 2.5 Crore Android Phones


Mohul Ghosh

Mohul Ghosh

Apr 28, 2025


A dairy businessman from Dharashiv lost his entire bank balance after installing a fake banking app shared via WhatsApp. The attack involved malware hidden inside an APK file, marking another alarming case of cybercrime targeting mobile users.

What is FatBoyPanel Malware?

FatBoyPanel is a mobile-first banking trojan discovered across nearly 900 applications, mainly targeting Indian users. Identified by cybersecurity firm Zimperium, this malware steals sensitive information, captures OTPs, and executes unauthorized transactions by hijacking live sessions on banking apps.

Experts explain that FatBoyPanel uses a central command structure, abuses live phone numbers for OTP redirection, and hides itself by disabling Google Play Protect after installation. Its organised structure makes it more dangerous than older banking trojans.

How Does FatBoyPanel Attack?

The malware attack typically begins with a WhatsApp message from scammers pretending to be bank officials or government representatives. Victims are tricked into downloading a malicious APK file. Once installed, the malware requests permissions to read SMS messages and access critical phone functions. It then hijacks sessions, steals OTPs, logs keystrokes, and even enables remote fund transfers through RATs (Remote Access Tools).

According to researchers, over 25 million devices have already been compromised, with more than 1,50,000 stolen SMS messages found on attacker panels.

How to Stay Safe from Mobile Malware

  • Avoid sideloading APK files: Only download apps from trusted official stores like Google Play.
  • Enable Google Play Protect: Keep it active for regular app scans.
  • Use strong mobile security solutions: Real-time threat detection can offer another layer of safety.
  • Be cautious with permissions: Do not allow SMS, gallery, or call access to unknown apps.
  • Verify app sources: Never click on suspicious links or install apps shared via messaging platforms.

Final Words: Stay Alert, Stay Safe

As cyber threats evolve, user vigilance is more crucial than ever. Experts recommend banks to move beyond SMS-based OTPs and adopt stronger multi-factor authentication methods. Awareness campaigns in regional languages and secure in-app verification processes are essential to curb the growing risk of mobile banking malware like FatBoyPanel.

Image Source


Mohul Ghosh
Mohul Ghosh
  • 2938 Posts

Subscribe Now!

Get latest news and views related to startups, tech and business

You Might Also Like

Business
Oct. 14, 2023

Startup Innovations: Guru4Invest’s Role in Democratizing Investment Opportunities

Access to capital has always been a significant challenge for startups. Traditional investment methods often leave small investors and new businesses at a disadvantage, with high barriers to entry and exclusive networks favoring established companies. Guru4Invest is changing this dynamic by leveraging cutting-edge artificial intelligence (AI) to level the playing field. The platform democratizes investment […]

Business
Dec. 8, 2022

Beat The Burden Of Medical Inflation With A Health Insurance

As disease rates rise and medical technology develops, treatment costs climb. It’s essential to understand that medical costs are not exclusively associated with hospitals. The cost of prescription drugs, diagnostic procedures, ambulance and operating room fees, consultations with doctors, and other costs are also constantly increasing. All of them could put a big strain on […]

Business
Dec. 8, 2022

3 Biggest Changes Of iOS 16.2 Update That Every iPhone User Should Know!

In its latest update Apple said that it is preparing for the iOS 16.2 update for iPhones across the world. Notably, like the previous release, there are a couple of changes coming for the iPhones.  iOS 16.2 Update Release Date So far, Apple has not announced a release date for iOS 16.2 update. Reportedly, the […]

Business
Dec. 8, 2022

300 Microsoft Employees Create Employee Union, First Time Ever: This Is How Microsoft Reacted

Around 300 workers at Microsoft Corp.’s ZeniMax Studios have commenced the process of forming a union which is said to be the first at the software giant in the US.  Here, Microsoft Corp.’s ZeniMax Studios known for popular video games including Skyrim and Fallout. Forming Union In Microsoft Corp Moreover, the quality assurance employees at […]

Recent Posts

Related Videos

   

Subscribe Now!

Get latest news and views related to startups, tech and business

who's online