The Cerberus Android malware family has gained the ability to steal its victims two-factor authentication (2FA) tokens and screen lock credentials. The operators of Cerberus released a new variant of their creation in mid-January 2020. This version came with a new remote-access Trojan (RAT) capability that allowed Cerberus to traverse the file system and download its contents. Such functionality granted full access over an infected device to Cerberus handlers. As such, they could leverage that functionality to change the devices settings, install or remove any app, use an app, and conduct espionage.”]

