← Back to Feed

'Grandoreiro' Malware Resurfaces With Mexico Campaign

August 20, 2026 · Dark Reading · Severity: HIGH

The Grandoreiro banking Trojan has resurfaced with a new campaign targeting Mexico, adding features that make detection and analysis harder. The malware was previously targeted by a law enforcement takedown but has returned with enhanced capabilities. New anti-analysis features and improved obfuscation techniques are being used to evade detection. Financial institutions in Mexico and Latin America should be alert for Grandoreiro activity.

Key Takeaways

  • Grandoreiro banking Trojan resurfaced post-takedown with a new campaign targeting Mexico.
  • The malware includes new features that make detection and analysis more difficult.
  • Financial institutions in Mexico and Latin America should be alert for Grandoreiro activity.
☕ Buy a Coffee