Search Articles

Search Results: AndroidMalware

Klopatra Trojan: Android Banking Malware With Silent VNC Backdoor Infects Thousands

Klopatra Trojan: Android Banking Malware With Silent VNC Backdoor Infects Thousands

A sophisticated new Android banking trojan named Klopatra is infecting European users via fake IPTV apps, using hidden VNC access to drain accounts while devices appear idle. The malware employs advanced evasion techniques, including commercial code protection and antivirus uninstallation, and originates from a Turkish-speaking threat group.
Inside SlopAds: How Google Took Down a 2.3 Billion Ad Fraud Operation on Android

Inside SlopAds: How Google Took Down a 2.3 Billion Ad Fraud Operation on Android

Google removed 224 malware-laced Android apps behind 'SlopAds'—a sophisticated ad fraud campaign generating 2.3 billion daily fraudulent ad requests. The operation used steganography and Firebase evasion to infect 38 million devices before detection. This takedown exposes escalating threats to mobile ecosystem integrity.
Brokewell Malware Hijacks Android Devices Through Fake TradingView Ads

Brokewell Malware Hijacks Android Devices Through Fake TradingView Ads

Cybercriminals are exploiting Meta's advertising platforms to distribute Brokewell Android malware disguised as TradingView Premium apps. The sophisticated campaign targets cryptocurrency assets and bypasses 2FA protections through device takeovers. Researchers at Bitdefender uncovered over 130 remote commands enabling full surveillance and financial theft.
Google Files Landmark Lawsuit to Disrupt Massive BadBox 2.0 Android Botnet Infecting 10 Million Devices

Google Files Landmark Lawsuit to Disrupt Massive BadBox 2.0 Android Botnet Infecting 10 Million Devices

Google has launched a high-stakes lawsuit against the unknown operators of the BadBox 2.0 botnet, a sophisticated operation compromising over 10 million Android devices globally. The botnet, exploiting insecure AOSP hardware and malicious apps, fuels large-scale ad fraud against Google's platforms and sells infected devices as residential proxies, posing a significant and growing cybersecurity threat.