Threat Group Cards: A Threat Actor Encyclopedia Archived: 2026-04-05 17:32:03 UTC Home > List all groups > List all tools > List all groups using tool CronBot Tool: CronBot Names CronBot Category Malware Type Banking trojan, Credential stealer Description (The Hacker News) Once victims downloaded and installed these fake apps on their devices, the apps added itself to the auto-start and the malware hidden inside them granted the hackers the ability to phish victims' banking credentials and intercept SMS messages containing confirmation codes sent by the bank to verify the transactions. Information AlienVault OTX Last change to this tool card: 21 May 2020 Download this tool card in JSON format All groups using tool CronBot Changed Name Country Observed Other groups   Cron 2015-Dec 2017 1 group listed (0 APT, 1 other, 0 unknown) Source: https://apt.etda.or.th/cgi-bin/listgroups.cgi?u=4241f520-2de3-4e62-8a0f-51f04a119ca4 https://apt.etda.or.th/cgi-bin/listgroups.cgi?u=4241f520-2de3-4e62-8a0f-51f04a119ca4 Page 1 of 1