{
  "modified": "2023-10-11T14:36:10.445Z",
  "name": "Escobar",
  "description": "[Escobar](https://attack.mitre.org/software/S1092) is an Android banking trojan, first detected in March 2021, believed to be a new variant of AbereBot.(Citation: Bleeipng Computer Escobar)",
  "is_family": true,
  "x_mitre_platforms": [
    "Android"
  ],
  "x_mitre_deprecated": false,
  "x_mitre_domains": [
    "mobile-attack"
  ],
  "x_mitre_version": "1.0",
  "x_mitre_contributors": [
    "Pooja Natarajan, NEC Corporation India",
    "Hiroki Nagahama, NEC Corporation",
    "Manikantan Srinivasan, NEC Corporation India"
  ],
  "x_mitre_aliases": [
    "Escobar"
  ],
  "type": "malware",
  "spec_version": "2.1",
  "id": "malware--ec13d292-6d8d-4c7a-b07c-a2bd2402569a",
  "created": "2023-09-28T17:04:46.516Z",
  "created_by_ref": "identity--c78cb6e5-0c4b-4611-8297-d1b8b55e40b5",
  "revoked": false,
  "external_references": [
    {
      "source_name": "mitre-attack",
      "url": "https://attack.mitre.org/software/S1092",
      "external_id": "S1092"
    },
    {
      "source_name": "Bleeipng Computer Escobar",
      "description": "B. Toulas. (2022, March 12). Android malware Escobar steals your Google Authenticator MFA codes. Retrieved September 28, 2023.",
      "url": "https://www.bleepingcomputer.com/news/security/android-malware-escobar-steals-your-google-authenticator-mfa-codes/"
    }
  ],
  "object_marking_refs": [
    "marking-definition--fa42a846-8d90-4e51-bc29-71d5b4802168"
  ],
  "x_mitre_attack_spec_version": "3.2.0",
  "x_mitre_modified_by_ref": "identity--c78cb6e5-0c4b-4611-8297-d1b8b55e40b5"
}