Android Malware Wpeeper Uses Compromised WordPress Sites to Hide C2 Servers

May 1, 2024 at 10:00AM Researchers have uncovered a new Android malware, Wpeeper, using compromised WordPress sites as relays for its command-and-control servers, evading detection. Disguised as the UPtodown App Store app, it includes a backdoor Trojan for Android, capable of collecting device info and executing commands. The campaign’s scale and goals remain unclear, emphasizing … Read more

New Wpeeper Android malware hides behind hacked WordPress sites

April 30, 2024 at 12:49PM A new Android malware named ‘Wpeeper’ was discovered in unofficial app stores, utilizing compromised WordPress sites as relay points for its command and control servers. The malware, discovered by QAX’s XLab team, had zero detections on Virus Total and infected thousands of devices. It features sophisticated C2 communication and 13 … Read more