Threat Group Cards: A Threat Actor Encyclopedia Archived: 2026-04-05 14:15:41 UTC Home > List all groups > List all tools > List all groups using tool GoldDigger Tool: GoldDigger Names GoldDigger Category Malware Type Banking trojan Description (Group-IB) Codenamed GoldDigger by Group-IB’s Threat Intelligence unit, the Trojan has been active since at least June 2023. The malicious application impersonates a Vietnamese government portal and an energy company and abuses the Android Accessibility service to extract personal information, steal banking app credentials, intercept SMS messages, and perform various user actions. The number of infected devices and the amount stolen remains unknown. Information Malpedia Last change to this tool card: 07 March 2024 Download this tool card in JSON format All groups using tool GoldDigger Changed Name Country Observed Unknown groups _[ Interesting malware not linked to an actor yet ]_ 1 group listed (0 APT, 0 other, 1 unknown) Source: https://apt.etda.or.th/cgi-bin/listgroups.cgi?u=3695f51b-e7ca-44fb-a187-3299950ff6f2 https://apt.etda.or.th/cgi-bin/listgroups.cgi?u=3695f51b-e7ca-44fb-a187-3299950ff6f2 Page 1 of 1