Cybersecurity researchers have uncovered a new Android malware, Herodotus, designed to steal banking credentials by mimicking human behavior. Analyzed by ThreatFabric, Herodotus employs techniques such as randomized input delays and character-by-character text entry to bypass detection systems. The malware is linked to the Brokewell banking trojan and is currently active in Brazil and Italy, using fake overlay pages in apps like Banca Sicura and Modulo Seguranca Stone. While no confirmed attacks have occurred outside these countries, similar overlay tactics have been used against crypto wallets and exchanges in the U.S., Turkey, the U.K., and Poland. Herodotus remains under active development, posing a potential threat to financial security worldwide.