Bottom line: These three malware families have significantly increased their presence in Latin America and Europe, compromising hundreds of thousands of devices worldwide.
What's happening: Grandoreiro, a highly persistent campaign, has been targeting individuals and businesses in Brazil, Argentina, and Chile, using compromised websites and malicious emails. The Manic banking trojan has been linked to the Grandoreiro campaign, while ToxicPanda 2.0 malware has been detected in Europe, particularly in the UK, Germany, and France. In March 2023, the FBI's Internet Crime Complaint Center (IC3) reported 542 complaints related to these threats.
What to do: CISOs and security leaders must ensure their organizations implement robust security controls, including multi-factor authentication, regular software updates, and network segmentation, to prevent these threats from compromising sensitive data. Specifically, the NCSA recommends that organizations use anti-malware solutions that detect and block the Grandoreiro and ToxicPanda 2.0 malware families, such as Norton AntiVirus and Kaspersky Total Security.