#androidmalware — Public Fediverse posts
Live and recent posts from across the Fediverse tagged #androidmalware, aggregated by home.social.
-
RedWing Android malware is a rental spyware sold as malware-as-a-service on Telegram. It steals banking logins, intercepts 2FA, and hijacks phones.
#RedWing #AndroidMalware #MalwareAsAService #Spyware #BankingTrojan #MobileSecurity #InfoSec #Telegram
https://securityonline.info/redwing-android-malware/?utm_source=mastodon&utm_medium=jetpack_social
-
RedWing Android malware is a rental spyware sold as malware-as-a-service on Telegram. It steals banking logins, intercepts 2FA, and hijacks phones.
#RedWing #AndroidMalware #MalwareAsAService #Spyware #BankingTrojan #MobileSecurity #InfoSec #Telegram
https://securityonline.info/redwing-android-malware/?utm_source=mastodon&utm_medium=jetpack_social
-
🤣 Oh no, the sky is falling! Another Android "malware" from Google?! 🚀 Apparently, if you're using Android 8 or above, your device is now a ticking time bomb! 🔥 But fear not, valiant defenders of #FDroid are here to save the day—just don't ask how they plan to do it with their open-source hero capes. 🦸♂️
https://f-droid.org/2026/07/01/adv-malware.html #AndroidMalware #Heroes #OpenSource #Safety #TechNews #HackerNews #ngated -
🤣 Oh no, the sky is falling! Another Android "malware" from Google?! 🚀 Apparently, if you're using Android 8 or above, your device is now a ticking time bomb! 🔥 But fear not, valiant defenders of #FDroid are here to save the day—just don't ask how they plan to do it with their open-source hero capes. 🦸♂️
https://f-droid.org/2026/07/01/adv-malware.html #AndroidMalware #Heroes #OpenSource #Safety #TechNews #HackerNews #ngated -
Android Malware NFCShare Targets Europe Banks via GitHub Updates
Malicious actors are using GitHub to spread new variants of the NFCShare Android malware, disguising them as banking app updates to target customers of European banks. Victims are first lured into downloading the malware through phishing sites that mimic real banks, where they're prompted to install a fake update.
-
Android Malware NFCShare Targets Europe Banks via GitHub Updates
Malicious actors are using GitHub to spread new variants of the NFCShare Android malware, disguising them as banking app updates to target customers of European banks. Victims are first lured into downloading the malware through phishing sites that mimic real banks, where they're prompted to install a fake update.
-
ESET Exposes BTMOB Android Malware Service
Meet BTMOB, a sneaky Android malware that's being sold as a subscription service - think $700/month or a one-time $5,000 fee for a lifetime license - making it easy for anyone to become a cyber threat actor. This malware-as-a-service platform even comes with a user-friendly APK builder, requiring zero coding skills.
#AndroidMalware #Malwareasaservice #RemoteAccessTrojan #Maas #Rat
-
Android Malware Campaign Silently Invoices Users via Fake Apps
Malware hidden in nearly 250 fake Android apps has been silently invoicing users for premium services, with victims largely unaware of the charges. The sneaky campaign, dubbed Premium Deception, targeted subscribers in several countries, including Malaysia, Thailand, Romania, and Croatia, over a 10-month period.
#AndroidMalware #PremiumDeception #FakeApps #EmergingThreats #MobileSecurity
-
Malicious Android Apps Fuel 659M Daily Ad Fraud Bid Requests
Meet Trapdoor, a massive ad fraud scam driven by 455 malicious Android apps that generated a whopping 659 million daily bid requests at its peak, all while hiding in plain sight as harmless utilities like PDF viewers and file managers. These fake apps tricked users into installing malware, unleashing a hidden ad fraud operation…
#AdFraud #Malvertising #AndroidMalware #MobileSecurity #EmergingThreats
-
Mobile Malware Attacks Drop, Banking Trojans Surge.
Mobile malware attacks may be on the decline, but banking Trojans are surging, with over 162,000 malicious packages detected in Q1 2026, putting your financial security at risk. Kaspersky's Q1 2026 report reveals a concerning shift in mobile threats, with 306,070 Android malware samples and 439 mobile ransomware Trojans also discovered.
#MobileMalware #BankingTrojans #KasperskySecurityNetwork #AndroidMalware #Q12026
-
TrickMo Trojan Adopts TON Blockchain for Evasive C2 Routing
A new variant of the TrickMo Trojan, tracked as TrickMo C, has emerged, cleverly using The Open Network (TON) blockchain to disguise its command-and-control traffic, making it even harder to detect. This sneaky malware targets banking and wallet users in France, Italy, and Austria through convincing TikTok-themed lures on Facebook…
#TrickmoTrojan #TonBlockchain #AndroidMalware #MobileThreats #EvasiveC2Routing
-
TrickMo Malware Adopts TON Blockchain for Covert Command-and-Control
Meet Trickmo.C, a sneaky new variant of the TrickMo Android banker that's been hiding in plain sight as a TikTok or streaming app, targeting unsuspecting users in France, Italy, and Austria since January. This cunning malware has evolved to use the TON blockchain for covert command-and-control, making traditional domain…
#Trickmo #TonBlockchain #AndroidMalware #Commandandcontrol #EmergingThreats
-
North Korean Hackers Infiltrate Android Games to Spy on Defectors
Security researchers at Eset stumbled upon a sneaky plot by North Korean hackers, who infiltrated popular Android games to spy on defectors by hiding a backdoor called BirdCall in the apps. The malicious code was cleverly disguised in game files available for download on a regional gaming platform's official website.
#NorthKoreanHackers #AndroidMalware #SupplyChain #Apt #EmergingThreats
-
Telegram Abused for Crypto Scams and Android Malware Delivery
Researchers uncovered a massive scam operation, dubbed FEMITBOT, that uses Telegram's Mini Apps to spread fake crypto platforms, brand impersonations, and Android malware, with a single API string tying it all together. Victims are lured in with a convincing, app-like interface that tricks them into divulging sensitive info.
-
NGate Malware Targets Brazil, Trojanizes HandyPay for NFC Data Theft
Security researchers have uncovered a sneaky new Android malware, NGate, that has been hiding in plain sight by infecting a legitimate app called HandyPay, used for NFC data relay, and using AI-generated code to steal payment credentials. This cleverly crafted malware has set its sights on Brazil, putting unsuspecting users at…
#NgateMalware #Handypay #NfcDataTheft #AigeneratedMalware #AndroidMalware
-
Malware Exploits APK Flaws to Evade Android Static Analysis
Malware developers have found a sneaky trick to evade detection on Android devices, exploiting APK flaws to hide their malicious code from static analysis - and over 3,000 malware samples have already adopted this tactic. This widespread technique allows malware to fly under the radar, posing a significant threat to…
#AndroidMalware #StaticAnalysisEvasion #ApkMalformation #MalwareDetection #EmergingThreats
-
Mirax RAT Exploits Meta Apps to Infiltrate Android Devices
Beware of fake ads on Meta apps - a sneaky new malware called Mirax RAT is using them to secretly take control of Android devices, with a focus on Spanish-speaking nations. This remote access Trojan is part of a growing Malware-as-a-Service economy that's putting unsuspecting users at risk.
#MiraxRat #Malwareasaservice #MetaApps #AndroidMalware #RemoteAccessTrojan
-
Mirax RAT Exploits Meta Ads to Hijack 220,000 Devices
Meet Mirax RAT, a sneaky Android malware that's hijacked over 220,000 devices by exploiting Meta Ads, giving strangers full control over unsuspecting users' phones. This malicious code has rapidly spread to hundreds of thousands of social accounts, showcasing the alarming power of mainstream ad platforms in the wrong hands.
#MiraxRat #AndroidMalware #RemoteAccessTrojan #SocialEngineering #MetaAds
-
Google clamps down on Android developers with mandatory verification
https://fed.brid.gy/r/https://nerds.xyz/2026/03/android-developer-verification/
-
Android threat alert.
BeatBanker Android Trojan spreads via fake Google Play Store pages.Features include:
• Crypto miner
• Banking overlays targeting Binance, Trust Wallet
• RAT payload via BTMOB Remote Access TrojanSource: https://securelist.com/beatbanker-miner-and-banker/119121/
Follow TechNadu for threat intel.
-
📬 Oblivion Android RAT: Kapert SMS, 2FA und umgeht Schutzmechanismen bis Android 16
#ITSicherheit #Malware #2FA #AccessibilityService #Android16 #AndroidMalware #AndroidRAT #HiddenVNC #MalwareasaService #MobileSecurity #Oblivion #PermissionBypass https://sc.tarnkappe.info/345ceb -
📬 Oblivion Android RAT: Kapert SMS, 2FA und umgeht Schutzmechanismen bis Android 16
#ITSicherheit #Malware #2FA #AccessibilityService #Android16 #AndroidMalware #AndroidRAT #HiddenVNC #MalwareasaService #MobileSecurity #Oblivion #PermissionBypass https://sc.tarnkappe.info/345ceb -
Android Malware Leverages Google Gemini for Adaptive Operations
PromptSpy, a new Android malware, uses Google Gemini AI to adapt and steal sensitive data like PINs and passwords. Learn how it affects your phone.
#PromptSpy, #AndroidMalware, #GoogleGemini, #CyberSecurity, #DataTheft
https://newsletter.tf/android-malware-promptspy-uses-gemini-ai/
-
New Android malware called PromptSpy uses Google Gemini AI to change its behavior and steal your data. This is the first time AI has been used this way in malware.
#PromptSpy, #AndroidMalware, #GoogleGemini, #CyberSecurity, #DataTheft
https://newsletter.tf/android-malware-promptspy-uses-gemini-ai/
-
Android’s AI nightmare begins as malware turns Gemini into a hacking tool
https://fed.brid.gy/r/https://nerds.xyz/2026/02/android-ai-malware-gemini-promptspy/
-
Android’s AI nightmare begins as malware turns Gemini into a hacking tool
https://web.brid.gy/r/https://nerds.xyz/2026/02/android-ai-malware-gemini-promptspy/
-
Android users beware! This security app is actually malware in disguise
Android users beware! This security app is actually malware in disguise
#Securityapp #Androidmalwarehttps://opr.news/2d26cb4d260209en_us?link=1&client=ex_global
Download Now
https://opr.as/share -
Hugging Face infrastructure was recently leveraged in an Android malware campaign distributing thousands of polymorphic APK variants.
The operation relied on user deception, accessibility abuse, and trusted content delivery paths rather than zero-day exploitation - reinforcing the role of social engineering and platform trust in modern mobile threats.
How are teams accounting for abuse of legitimate platforms?
Follow @technadu for balanced infosec reporting.
#Infosec #AndroidMalware #HuggingFace #ThreatIntelligence #MobileSecurity #CyberDefense
-
Hugging Face infrastructure was recently leveraged in an Android malware campaign distributing thousands of polymorphic APK variants.
The operation relied on user deception, accessibility abuse, and trusted content delivery paths rather than zero-day exploitation - reinforcing the role of social engineering and platform trust in modern mobile threats.
How are teams accounting for abuse of legitimate platforms?
Follow @technadu for balanced infosec reporting.
#Infosec #AndroidMalware #HuggingFace #ThreatIntelligence #MobileSecurity #CyberDefense
-
Researchers report Android malware leveraging machine learning to automate click fraud via hidden WebView sessions.
The activity avoids traditional DOM-based scripts and instead relies on visual recognition, highlighting how automation techniques continue to evolve even in lower-impact threat categories.
Follow @technadu for balanced reporting on emerging mobile threats.
#AndroidMalware #MobileThreatIntel #AdFraud #AIinCybersecurity #Infosec #TechNadu
-
Analysis of the Kimwolf Android botnet shows how exposed services, modified binaries, and residential proxy ecosystems can enable rapid scaling of malware operations.
The case underscores persistent challenges in consumer IoT security, supply-chain integrity, and the unintended abuse of proxy infrastructure.
From a defensive standpoint, where should mitigation efforts be prioritized?
Source: https://www.securityweek.com/kimwolf-android-botnet-grows-through-residential-proxy-networks/
Share insights and follow @technadu for objective infosec reporting.
#BotnetAnalysis #AndroidMalware #IoTSecurity #ThreatIntelligence #NetworkDefense #Infosec
-
🚨 New Android RAT "Cellik" spotted! This sneaky malware bundles into Play Store apps with one-click, enabling full device takeover: live screen streaming, keylogging, hidden browsing & fake login overlays. Stay vigilant, avoid shady APKs! 📱🔒 https://cyberinsider.com/new-android-rat-cellik-emerges-with-play-store-integration/ #Cybersecurity #AndroidMalware #Cellik #Newz
-
🚨 New Android RAT "Cellik" spotted! This sneaky malware bundles into Play Store apps with one-click, enabling full device takeover: live screen streaming, keylogging, hidden browsing & fake login overlays. Stay vigilant, avoid shady APKs! 📱🔒 https://cyberinsider.com/new-android-rat-cellik-emerges-with-play-store-integration/ #Cybersecurity #AndroidMalware #Cellik #Newz
-
New $150 Cellik RAT Grants Android Control, Trojanizes Google Play Apps https://www.securityweek.com/new-150-cellik-rat-grants-android-control-trojanizes-google-play-apps/ #Malware&Threats #Mobile&Wireless #Androidmalware #Cellik #RAT
-
New $150 Cellik RAT Grants Android Control, Trojanizes Google Play Apps https://www.securityweek.com/new-150-cellik-rat-grants-android-control-trojanizes-google-play-apps/ #Malware&Threats #Mobile&Wireless #Androidmalware #Cellik #RAT
-
New Android Malware Locks Device Screens and Demands a Ransom https://thecyberexpress.com/android-malware-locks-device-demands-ransom/ #TheCyberExpressNews #Androidransomware #TheCyberExpress #AndroidMalware #FirewallDaily #cybersecurity #CyberThreats #cyberattacks #cybercrime #Ransomware #CyberNews #malware
-
New Android Malware Locks Device Screens and Demands a Ransom https://thecyberexpress.com/android-malware-locks-device-demands-ransom/ #TheCyberExpressNews #Androidransomware #TheCyberExpress #AndroidMalware #FirewallDaily #cybersecurity #CyberThreats #cyberattacks #cybercrime #Ransomware #CyberNews #malware
-
DroidLock: Malware Built for Extortion, Device Takeover, and Insider Threat Risk in Spain
https://www.technadu.com/droidlock-malware-build-for-extortion-device-takeover-and-insider-threat-risk-in-spain/615553/DroidLock is an Android malware campaign using phishing sites and Accessibility abuse to enable full device takeover. Capabilities include PIN changes, full wipes, screen recording, camera capture, and credential theft via dual overlay screens.
BYOD devices pose additional insider-risk implications due to accessible MFA codes and internal accounts.
Which detection controls do you consider most effective against Android Accessibility-abusing malware?
#CyberSecurity #AndroidMalware #DroidLock #MobileSecurity #ThreatIntel #Spain #TechNadu
-
DroidLock: Malware Built for Extortion, Device Takeover, and Insider Threat Risk in Spain
https://www.technadu.com/droidlock-malware-build-for-extortion-device-takeover-and-insider-threat-risk-in-spain/615553/DroidLock is an Android malware campaign using phishing sites and Accessibility abuse to enable full device takeover. Capabilities include PIN changes, full wipes, screen recording, camera capture, and credential theft via dual overlay screens.
BYOD devices pose additional insider-risk implications due to accessible MFA codes and internal accounts.
Which detection controls do you consider most effective against Android Accessibility-abusing malware?
#CyberSecurity #AndroidMalware #DroidLock #MobileSecurity #ThreatIntel #Spain #TechNadu
-
New Albiriox Android Malware Developed by Russian Cybercriminals https://www.securityweek.com/new-albiriox-android-malware-developed-by-russian-cybercriminals/ #Malware&Threats #Androidmalware #Androidtrojan #bankingtrojan #Albiriox
-
New Albiriox Android Malware Developed by Russian Cybercriminals https://www.securityweek.com/new-albiriox-android-malware-developed-by-russian-cybercriminals/ #Malware&Threats #Androidmalware #Androidtrojan #bankingtrojan #Albiriox
-
Landfall Android Spyware Targeted Samsung Phones via Zero-Day https://www.securityweek.com/landfall-android-spyware-targeted-samsung-phones-via-zero-day/ #Malware&Threats #Androidmalware #exploited #Landfall #Samsung #spyware #ZeroDay
-
Android malware steals your card details and PIN to make instant ATM withdrawals https://www.malwarebytes.com/blog/news/2025/11/android-malware-steals-your-card-details-and-pin-to-make-instant-atm-withdrawals #SocialEngineering #androidmalware #Android #NGate #News #nfc
-
Your smartphone might soon be acting on its own. Herodotus Android malware is learning your every tap to outsmart security. How safe is your mobile life?
https://thedefendopsdiaries.com/herodotus-android-malware-the-next-evolution-in-cyber-deception/
#androidmalware
#cyberdeception
#mobilethreats
#aiincybersecurity
#malwareevasion -
🚨 Android Spyware Alert: ProSpy & ToSpy
ESET has discovered Android spyware campaigns targeting Signal and ToTok users.These malicious apps, distributed via fake websites, exfiltrate contacts, SMS, media, and device data.
⚠️ Do NOT install apps from unofficial sources! Stay vigilant.
💬 How can mobile users and organizations improve defenses against spyware? Discuss & follow @technadu for cybersecurity alerts.#ProSpy #ToSpy #AndroidMalware #CyberSecurity #MobileSecurity #SpywareAlert #Privacy #Infosec #ThreatIntel
-
Anatsa Android Banking Trojan Now Targeting 830 Financial Apps https://www.securityweek.com/anatsa-android-banking-trojan-now-targeting-830-financial-institutions/ #Malware&Threats #Androidmalware #Androidtrojan #bankingtrojan #malware #Anatsa
-
Anatsa Android Banking Trojan Now Targeting 830 Financial Apps https://www.securityweek.com/anatsa-android-banking-trojan-now-targeting-830-financial-institutions/ #Malware&Threats #Androidmalware #Androidtrojan #bankingtrojan #malware #Anatsa
-
🚨 The #PlayPraetor Android RAT operation is expanding globally! Over 11,000 devices infected in under 3 months, targeting Europe 🇪🇺 (especially Portugal, Spain, France) & spreading in Africa, LATAM & Asia 🌍. Sophisticated MaaS platform enables real-time device control & financial fraud 🛡️📱. Stay informed! #CyberSecurity #AndroidMalware #MaaS #newz
Read more: https://cyberinsider.com/playpraetor-android-rat-operation-grows-globally-with-maas-expansion/
-
Iranian APT Targets Android Users With New Variants of DCHSpy Spyware https://www.securityweek.com/new-variants-of-dchspy-spyware-used-by-iranian-apt-to-target-android-users/ #Malware&Threats #Androidmalware #mobilemalware #spyware #DCHSpy #Israel #Iran
-
Iranian APT Targets Android Users With New Variants of DCHSpy Spyware https://www.securityweek.com/new-variants-of-dchspy-spyware-used-by-iranian-apt-to-target-android-users/ #Malware&Threats #Androidmalware #mobilemalware #spyware #DCHSpy #Israel #Iran
-
Photo-Stealing Spyware Sneaks Into Apple App Store, Google Play https://www.securityweek.com/photo-stealing-spyware-sneaks-into-apple-app-store-google-play/ #Malware&Threats #Mobile&Wireless #Androidmalware #cryptocurrency #iOSmalware #SparkKitty #spyware
-
Photo-Stealing Spyware Sneaks Into Apple App Store, Google Play https://www.securityweek.com/photo-stealing-spyware-sneaks-into-apple-app-store-google-play/ #Malware&Threats #Mobile&Wireless #Androidmalware #cryptocurrency #iOSmalware #SparkKitty #spyware
-
Godfather Android Trojan Creates Sandbox on Infected Devices – Source: www.securityweek.com https://ciso2ciso.com/godfather-android-trojan-creates-sandbox-on-infected-devices-source-www-securityweek-com/ #rssfeedpostgeneratorecho #CyberSecurityNews #Malware&Threats #securityweekcom #Androidmalware #Androidtrojan #bankingtrojan #securityweek #GodFather #Malware
-
📬 Godfather 2.0: Android-Malware nutzt Virtualisierung für Banking-Raubzüge in Echtzeit
#ITSicherheit #Malware #AndroidMalware #AndroidVirtualisierung #BankingTrojaner #Godfather20 #MobileMalware #Zimperium https://sc.tarnkappe.info/330be1 -
Godfather Android Trojan Creates Sandbox on Infected Devices https://www.securityweek.com/godfather-android-trojan-creates-sandbox-on-infected-devices/ #Malware&Threats #Androidmalware #Androidtrojan #bankingtrojan #Godfather #malware
-
Godfather Android Trojan Creates Sandbox on Infected Devices https://www.securityweek.com/godfather-android-trojan-creates-sandbox-on-infected-devices/ #Malware&Threats #Androidmalware #Androidtrojan #bankingtrojan #Godfather #malware