Massive SMS stealer campaign infects Android devices in 113 countries

July 30, 2024 at 05:31PM A global Android-targeting malware campaign utilizes thousands of Telegram bots to spread SMS-stealing malware, compromising over 600 services’ one-time passwords. Zimperium researchers uncovered this operation, tracking at least 107,000 malware samples since February 2022. Cybercriminals exploit infected devices for financial gain and use the malware to transmit captured messages to … Read more

Android spyware ‘Mandrake’ hidden in apps on Google Play since 2022

July 29, 2024 at 06:29PM A new variant of the Android spyware ‘Mandrake’ was discovered in five Google Play apps downloaded 32,000 times. Kaspersky found the updated version with enhanced obfuscation and evasion, entering through these apps. The spyware operates stealthily, prompting users to install further malicious APKs. Android users are urged to be cautious … Read more

Android 15 Brings Improved Fraud and Malware Protections

May 16, 2024 at 09:07AM Google announced improved security features and AI-powered protections in Android 15 to keep users safe from fraud and malware. Play Protect, scanning 200 billion apps daily, will feature live threat detection and enhanced on-device AI. Android 15 will also include tightened screen sharing controls and enhanced protections against fraud and … Read more

Finland warns of Android malware attacks breaching bank accounts

May 5, 2024 at 12:10PM Traficom warns of an ongoing Android malware campaign targeting bank accounts in Finland. Scammers send SMS messages impersonating banks, instructing victims to install a fake McAfee app, which is actually malware. The Vultur trojan is suspected, with a new version using smishing and phone call attacks. Victims who have installed … Read more

New Wpeeper Android malware hides behind hacked WordPress sites

April 30, 2024 at 12:49PM A new Android malware named ‘Wpeeper’ was discovered in unofficial app stores, utilizing compromised WordPress sites as relay points for its command and control servers. The malware, discovered by QAX’s XLab team, had zero detections on Virus Total and infected thousands of devices. It features sophisticated C2 communication and 13 … Read more

Google rejected 2.28 million risky Android apps from Play store in 2023

April 29, 2024 at 12:13PM Google blocked 2.28 million Android apps and 333,000 Google Play accounts due to policy violations, part of its ‘SAFE’ principles to protect users and innovate responsibly. Enhanced reviewing processes and collaborations with SDK providers resulted in the rejection or remediation of 200,000 risky app submissions. Google advises sourcing apps only … Read more

Google rejected 2.28 million risky apps from Play Store in 2023

April 29, 2024 at 12:05PM Google blocked 2.28 million apps from Google Play due to policy violations, while also identifying and blocking 333,000 accounts for malware and policy breaches. These actions are part of Google’s ‘SAFE’ principles to protect users and developers. Additional efforts include rejecting risky app submissions and partnering with SDK providers. Users … Read more

New Brokewell malware takes over Android devices, steals data

April 25, 2024 at 10:05AM New Android banking trojan “Brokewell” discovered by security researchers, capable of capturing all device activity through a fake Google Chrome update. Used in previous campaigns targeting financial services, it aims to steal data and provide remote control to attackers. Developed by an individual called Baron Samedit, with a loader bypassing … Read more

Android malware Chameleon disables Fingerprint Unlock to steal PINs

December 21, 2023 at 09:33AM The Chameleon Android banking trojan is back with new tricks, disabling biometrics to steal PINs on Android devices. This upgraded version evades detection by posing as Google Chrome through the Zombinder service. It now targets Android 13 and 14, bypassing security settings to gain accessibility permissions and disrupting biometric operations. … Read more