01 Dec Android malware infected 300,000 devices to steal Facebook accounts An Android malware campaign masquerading as reading and education apps has been underway since 2018, attempting to steal Facebook account credentials from infected devices. […]
28 Nov Malicious Android app found powering account creation service A fake Android SMS application, with 100,000 downloads on the Google Play store, has been discovered to secretly act as an SMS relay for an account creation service for sites like Microsoft, Google, Instagram, Telegram, and Facebook […]
23 Nov Mali GPU ‘patch gap’ leaves Android users vulnerable to attacks A set of five exploitable vulnerabilities in Arm’s Mali GPU driver remain unfixed months after the chip maker patched them, leaving potentially millions of Android devices exposed to attacks. […]
14 Nov 42,000 sites used to trap users in brand impersonation scheme A malicious for-profit group named ‘Fangxiao’ has created a massive network of over 42,000 web domains that impersonate well-known brands to redirect users to sites promoting adware apps, dating sites, or ‘free’ giveaways. […]
12 Nov Android phone owner accidentally finds a way to bypass lock screen Cybersecurity researcher David Schütz accidentally found a way to bypass the lock screen on his fully patched Google Pixel 6 and Pixel 5 smartphones, enabling anyone with physical access to the device to unlock it. […]
11 Nov New BadBazaar Android malware linked to Chinese cyberspies A previously undocumented Android spyware tool named ‘BadBazaar’ has been discovered targeting ethnic and religious minorities in China, most notably the Uyghurs in Xinjiang. […]
01 Nov Malicious Android apps with 1M+ installs found on Google Play A set of four malicious applications currently available in Google Play, the official store for the Android system, are directing users sites that steal sensitive information or generate ‘pay-per-click’ revenue for the operators. […]
27 Oct Drinik Android malware now targets users of 18 Indian banks A new version of the Drinik Android banking trojan targets 18 Indian banks, masquerading as the country’s official tax management app to steal victims’ personal information and banking credentials. […]
23 Oct Typosquat campaign mimics 27 brands to push Windows, Android malware A massive, malicious campaign is underway using over 200 typosquatting domains that impersonate twenty-seven brands to trick visitors into downloading various Windows and Android malware. […]
11 Oct Android leaks some traffic even when ‘Always-on VPN’ is enabled Mullvad VPN has discovered that Android leaks traffic every time the device connects to a WiFi network, even if the “Block connections without VPN,” or “Always-on VPN,” features is enabled. […]