Trojan
A Trojan does not break in; the victim opens the door. It usually presents itself as something useful — a program or a document, a fake installer, a cracked application, or a harmless-looking tool for speeding up the computer. The user runs what they meant to run, and the attacker gets what they were after.
Term
description · examples · notesA Trojan does not break in; the victim opens the door. It usually presents itself as something useful — a program or a document, a fake installer, a cracked application, or a harmless-looking tool for speeding up the computer. The user runs what they meant to run, and the attacker gets what they were after.
Description
The name is not an accident. As with the wooden horse outside Troy, the trick is that the victim opens the gate and lets the threat onto their own ground. Once running, a Trojan can do almost anything: open a backdoor, pull down further components, record what you do, or hand over full remote control. It is not the infection itself, only its carrier.
A Trojan is most often the first stage of an attack. Ransomware, infostealers, remote access tools — all of them tend to arrive this way, because a person clicking without a second thought is a more reliable way in than any vulnerability.
Examples
- An employee downloads a free version of an expensive program from a dubious site. It installs and it works — but hidden inside the installation comes a Trojan with unknown cargo.
- A fake installer for a popular tool is served through a search ad. The page looks official, the name matches, the icon is the same. The difference is one letter in the web address.
- A PDF reader taken from somewhere other than the official source does everything it should — while in the background it has brought along a keylogger that records every keystroke.
Notes
- The Trojan is not the goal — it is the courier, and it carries a record. Catching it leaves you the job of finding what it delivered.
- The surest defense against Trojans is a boring one: software comes only from the official source, and mail attachments are not opened without thinking. A crack or a free copy of a favorite application may cost nothing today; the bill arrives later, and it is larger.
Mentioned in the news
- 13. JUL 2026. Trojanac u Visual Studio projektima ostavlja zamke za razvojne inženjere →
- 22. APR 2026. Lažne TikTok downloader ekstenzije zarazile više od 130.000 korisnika →
- 21. APR 2026. Nova NGate varijanta krije se u trojanizovanoj HandyPay aplikaciji →
- 20. APR 2026. SEO poisoning kampanja preko lažnog TestDisk sajta ubacuje ScreenConnect →
- 19. APR 2026. Šta je trojan i šta raditi ako sumnjate da ste ga otvorili →
- 15. APR 2026. Kompromitovan CPUID distribuirao STX RAT kroz lažne CPU-Z i HWMonitor instalere →
- 20. MAR 2026. Perseus Android bankarski malver prati Notes aplikacije radi krađe osetljivih podataka →
- 11. MAR 2026. Shub malver širi se kroz lažne macOS aplikacije za čišćenje sistema →
- 11. MAR 2026. BeatBanker Android malver širi se kao lažna Starlink aplikacija →
- 10. FEB 2026. Lažni 7-Zip sajt distribuira instaler sa ugrađenim proxy alatom →
- 29. MAJ 2026. Ne baš vešti hakeri sa AI-jem pod miškom, vrebaju Ukrajinu →
- 22. APR 2026. Lažne wallet aplikacije u kineskom App Store-u kradu seed phrase →
- 14. MAR 2026. Storm-2561 širi trojanizovane VPN klijente kroz SEO poisoning i krade pristupne podatke →
- 11. MAR 2026. Lažne ChatGPT i Gemini iOS aplikacije kradu Facebook naloge →
Techniques
carried out with 8Techniques used to carry it out. Select one to open its page.
Defenses
countered by 6How it is defended against. Select one to open its page.