Information on Anatsa banking trojan malware

IMPORTANT: We’ve had no reports of this malware affecting Advantis members

While no members have been impacted to date, your online banking security remains among our highest priorities. We’ll continue to provide updates and information to help protect you against potential threats.

What is Anatsa?

The Anatsa banking trojan is a type of malware that can steal your login credentials, account information, and money. It’s been targeting European banks since November 2023, and it has become more sophisticated and dangerous over time.

What’s the threat?

The banking trojan can infect your device through malicious apps that you download from official stores like Google Play. While they may seem harmless, these apps can secretly download and install the Anatsa malware on your device.

The Anatsa malware can then access your device's Accessibility Service, which is a feature that helps people with disabilities use their devices. Through your device’s Accessibility Services, the malware can actually monitor your screen, keyboard, and other inputs—capturing your online banking credentials, account balances, transactions, and other sensitive data.

The malware can also bypass the security measures of Android operating systems. It can use manufacturer-specific code to target certain devices, especially Samsung.

How can I protect myself?

Follow some simple tips to protect yourself when installing apps and when using your mobile device to do your online banking.

  • Only download apps from trusted sources and developers. Always check the reviews, ratings, and permissions of the app before installing.
  • Do NOT enable Accessibility Service for any app unless you absolutely need it. You can manage the Accessibility Service settings in your device's settings menu.
  • Use a strong and unique password for your online banking accounts. Change it regularly, and do not share it with anyone.
  • Enable two-factor authentication (2FA) for your online accounts; this extra layer of security requires a code or biometric verification to access your account.
  • Monitor your Advantis account activity regularly, and report any suspicious or unauthorized transactions to us immediately.