Actively Exploited Android Zero-Day Elevation of Privilege vulnerability Patched
Google has released a patch for a critical zero-day vulnerability, CVE-2024-32896, which was actively exploited in the wild. This vulnerability, classified as a high-severity elevation of privilege (EoP) flaw, was discovered in the Android...
Hackers Use Rocinante Malware to Take Over The Android Device Remotely
The ever-evolving malware landscape is evolving at an alarming rate, as a multitude of new strains have already been noticed.
Hackers are becoming more innovative and sophisticated in their mode of attack, specifically looking into...
New Copybara Android Malware Remotely Controlling Infected Device
A new variant of Copybara, an Android malware family, has been detected to be active since November 2023 spreading through vishing attacks and leveraging the MQTT protocol for C2 communication.
The malware exploits the Accessibility...
Android & iOS Users Targeted with New Phishing Attack Using PWAs & WebAPKs
A novel type of phishing attack has been discovered, targeting both Android and iOS users. This attack combines traditional social engineering techniques with the use of Progressive Web Applications (PWAs) and WebAPKs, making it...
Critical Android Vulnerability Impacting Millions of Pixel Devices Worldwide
An Android package, "Showcase.apk," preinstalled on a significant portion of Pixel devices since 2017, possesses extensive system permissions enabling remote code execution and package installation.
It fetches a configuration file via unsecured HTTP from a...
Google Patches Actively Exploited Android Kernel Zero-Day Patched
The Android Security Bulletin for August 2024 details vulnerabilities addressed by the 2024-08-05 security patch level.
The most critical issue is a high-severity vulnerability in the Framework component, which could potentially allow local privilege escalation...
New SMS Stealer Infects Millions Of Android Users In 113 Countries
Since February 2022, a highly advanced Android malware campaign has been specifically designed to attack one-time passwords (OTPs), which are used for enterprise security breaches.
While tracking more than 107,000 malware samples, zLabs researchers noticed...
Beware of Malicious Mandrake Apps From Google Play With Over 32,000 Installs
A sophisticated Android spyware campaign known as Mandrake has resurfaced on the Google Play Store, infecting over 32,000 devices between 2022 and 2024.
Mandrake has returned after a two-year break with its latest campaign....
Spyware Provider for Windows, Mac & Android Hacked, Sensitive Data Exposed
The Spytech, a little-known spyware maker based in Minnesota, has been hacked, exposing sensitive data from thousands of devices worldwide.
The breach has unveiled the covert surveillance activities of the company, which has compromised over...
Konfety Hackers Hosted 250 apps on Google’s Play Store to Push Malicious Ads
Researchers discovered a new ad fraud scheme named Konfety that leverages "decoy twin" apps on official marketplaces and their malicious "evil twin" counterparts.
Decoy twins are seemingly harmless apps found on platforms like the Google...