How to Detect Anubis Trojan Attacks Using AI

Last updated February 11, 2025 by Appdome

What is Anubis?

Anubis is a highly sophisticated Android banking trojan targeting financial and banking apps to steal credentials, financial information, and intercept two-factor authentication (2FA) codes. It spreads through malicious apps disguised as legitimate tools in third-party stores and employs phishing overlays, keylogging, and screen recording to capture sensitive data. Advanced versions of Anubis include Remote Access Trojan (RAT) functionality, allowing attackers to control infected devices in real time and execute unauthorized transactions. Its modular structure and evolving evasion techniques, including potential AI integration, make it a significant threat to user privacy and financial security. Protecting against Anubis is critical to prevent fraud, account takeovers (ATOs), and data breaches while maintaining compliance with standards like PCI DSS and GDPR.

How Appdome Protects Against Anubis Trojan in Android Apps?

Appdome’s dynamic Detect Anubis Trojan plugin for Android combines advanced protections for overlay attacks, keyloggers, and fake apps. It detects and blocks screen recording abuse, prevents unauthorized overlays, and validates app signatures to prevent fake or cloned apps. Combined, these protections ensure dynamic and continuous protection against Anubis’s diverse attack vectors without requiring developers to write or change code. Mobile developers can leverage Appdome’s Threat-Events™ to collect detailed data and implement tailored in-app responses based on detected threats.

Related Articles:

How Do I Learn More?

If you have any questions, please send them our way at support.appdome.com or via the chat window on the Appdome platform.

Thank you!

Thanks for visiting Appdome! Our mission is to secure every app on the planet by making mobile app security easy. We hope we’re living up to the mission with your project.

Appdome

Want a Demo?

Android Malware Detection

GilWe're here to help
We'll get back to you in 24 hours to schedule your demo.