09 Jan Darknet drug markets move to custom Android apps for increased privacy Online markets selling drugs and other illegal substances on the dark web have started to use custom Android apps for increased privacy and to evade law enforcement. […]
27 Dec EarSpy attack eavesdrops on Android phones via motion sensors A team of researchers has developed an eavesdropping attack for Android devices that can, to various degrees, recognize the caller’s gender and identity, and even discern private speech. […]
01 Dec Compromised OEM Android platform certificates used to sign malware Multiple platform certificates used by Android OEM device vendors to digitally sign core system applications were utilized by threat actors to sign apps containing malware. […]
01 Dec Samsung, LG, Mediatek certificates compromised to sign Android malware Multiple platform certificates used by Android OEM device vendors to digitally sign core system applications have also been used to sign Android apps containing malware. […]
01 Dec Android malware infected 300,000 devices to steal Facebook accounts An Android malware campaign masquerading as reading and education apps has been underway since 2018, attempting to steal Facebook account credentials from infected devices. […]
28 Nov Malicious Android app found powering account creation service A fake Android SMS application, with 100,000 downloads on the Google Play store, has been discovered to secretly act as an SMS relay for an account creation service for sites like Microsoft, Google, Instagram, Telegram, and Facebook […]
23 Nov Mali GPU ‘patch gap’ leaves Android users vulnerable to attacks A set of five exploitable vulnerabilities in Arm’s Mali GPU driver remain unfixed months after the chip maker patched them, leaving potentially millions of Android devices exposed to attacks. […]
14 Nov 42,000 sites used to trap users in brand impersonation scheme A malicious for-profit group named ‘Fangxiao’ has created a massive network of over 42,000 web domains that impersonate well-known brands to redirect users to sites promoting adware apps, dating sites, or ‘free’ giveaways. […]
12 Nov Android phone owner accidentally finds a way to bypass lock screen Cybersecurity researcher David Schütz accidentally found a way to bypass the lock screen on his fully patched Google Pixel 6 and Pixel 5 smartphones, enabling anyone with physical access to the device to unlock it. […]
11 Nov New BadBazaar Android malware linked to Chinese cyberspies A previously undocumented Android spyware tool named ‘BadBazaar’ has been discovered targeting ethnic and religious minorities in China, most notably the Uyghurs in Xinjiang. […]