Cybersecurity News
Filters
Filtered by tag: android × Clear
Android car systems abused by hackers to launch new malware that pulls devices into a hidden proxy network
Kaspersky discovered Android malware targeting DoFun car head units by hijacking the TWCore update app to install malicious APKs. The multi-stage attack deploys a dropper, loader, and reverse proxy tool, with the apparent goal of building a botnet from internet-connected vehicles. Kaspersky attributed the campaign to MoYu Group, previously linked to the BadBox botnet. DoFun has since patched the vulnerabilities.
Shop now? Banking malware campaign posing as Woolworths active in Australia
Matched: Australia
A banking malware campaign is targeting Australians by impersonating Woolworths and other trusted brands to distribute an Android trojan. The malware can access bank accounts, read SMS messages, and activate device cameras. Users are urged to avoid downloading apps from unofficial sources and to verify the legitimacy of any links before clicking.
Android users targeted by new WindRelay malware which can clone contactless cards in just 13 minutes
Cybercriminals are targeting Android users with malware called WindRelay, which can clone contactless payment cards in around 13 minutes. Attackers phone victims, trick them into installing the malicious app, then use it to capture card data via the phone's NFC chip. The stolen information is relayed to a criminal-controlled device to make fraudulent payments.
‘Popa’ Botnet Linked to Publicly-Traded Israeli Firm
A years-long Android botnet called Popa has hijacked millions of consumer TV boxes to relay traffic tied to ad fraud, account takeovers, and data scraping. Security researchers have linked the operation to NetNut, a residential proxy service run by Alarum Technologies, a publicly traded Israeli company listed on NASDAQ.
