Crocodilus is a sophisticated piece of malware that steals digital assets from Android devices, particularly targeting Android 13 or later versions. It utilizes overlays, remote access, and social engineering to take over devices and drain crypto wallets.
Discovered by ThreatFabric in March 2025, Crocodilus has primarily affected users in Spain and Turkey, with expectations of global expansion. The malware’s advanced capabilities pose significant risks to crypto holders, emphasizing the need for heightened security measures.
Users should exercise caution by avoiding suspicious links, keeping their devices updated, and using reputable security software to protect their digital assets from such threats.



