Tag

Mobile Security

All articles tagged with #mobile security

AI-powered RatHat malware hijacks Android devices with remote UI control
cybersecurity21 days ago

AI-powered RatHat malware hijacks Android devices with remote UI control

A new Android malware named RatHat uses an AI-powered UI automation subsystem to remotely control compromised devices via Accessibility permissions, enabling actions such as enabling Developer Options, ADB shell access, keylogging, credential-stealing overlays, SMS/OTP interception, and a persistent reverse-proxy tunnel; it can restore itself after removal and even intercept uninstall prompts. Linked to Chinese actors per Zimperium, RatHat spreads via malvertising, phishing, and APKs from outside Google Play, and includes anti-analysis tricks to hinder detection. Users are advised to avoid sideloaded APKs, revoke unnecessary Accessibility permissions, and regularly scan with Play Protect.

Most Android Users Don’t Need Antivirus Apps, Here’s Why
technology1 month ago

Most Android Users Don’t Need Antivirus Apps, Here’s Why

For the vast majority of users, Android’s built‑in protections (Google Play Protect, app sandboxing, regular OS updates, and prudent permission controls) provide solid defense against malware and risky apps, making third‑party antivirus apps largely unnecessary. An antivirus may offer peace of mind for high‑risk users or those who sideload apps, but choose a reputable developer and don’t rely on it alone. Real threats often come from social engineering, fake alerts, insecure public Wi‑Fi, and other attack vectors that antivirus can’t fix; safe habits and, when relevant, a VPN are typically more effective. Older devices without updates may still benefit from additional protection, but updates remain the best defense overall.

Security flaws expose therapy data in popular Android mental-health apps
technology7 months ago

Security flaws expose therapy data in popular Android mental-health apps

Researchers found 1,575 vulnerabilities across 10 Android mental-health apps with more than 14.7 million total installs, including insecure URI handling, local data exposure, hardcoded API endpoints, and weak token generation, potentially exposing therapy transcripts and other sensitive data; it's unclear if the issues have been fixed.

AI-driven Android trojan covertly clicks hidden ads via phantom mode
security8 months ago

AI-driven Android trojan covertly clicks hidden ads via phantom mode

Researchers have uncovered a new Android click-fraud Trojan family that uses TensorFlow.js to visually identify ad elements and automatically click them. It runs in two modes: phantom, which uses a hidden WebView-based browser to load pages and a loaded ML model to tap the correct UI elements, and signalling, which streams a live video of the virtual screen via WebRTC to allow attackers to perform actions in real time. The malware is distributed through Xiaomi GetApps by infected games, and via third-party APK sites and Telegram/Discord channels promoting modified apps. Impact includes battery drain and higher data usage; users are advised to avoid sideloading apps outside Google Play.

technology11 months ago

F-Droid Criticizes Google Over Sideloading and App Verification Claims

The article advocates for moving away from Google's control of Android towards open-source alternatives like PostmarketOS, emphasizing the importance of open platforms for user freedom, privacy, and innovation. It discusses the challenges posed by corporate control, security concerns, and regulatory issues, urging collective effort and legislative action to promote open technology and reduce dependency on proprietary systems.

ClayRat Spyware Targets UAE Android Users Through Fake Apps and Messaging
mobile-security1 year ago

ClayRat Spyware Targets UAE Android Users Through Fake Apps and Messaging

ClayRat is a sophisticated Android spyware campaign targeting users in Russia by impersonating popular apps like WhatsApp and TikTok through fake websites and Telegram channels. It can exfiltrate sensitive data, take photos, and propagate itself by sending malicious links to contacts. The malware uses obfuscation and fake app installers to bypass security measures, and while Google Play Protect offers some protection, the threat highlights ongoing risks from pre-installed apps with elevated privileges.

Unity Security Flaw Exposes Games and Crypto Wallets, Urging Immediate Action
technology1 year ago

Unity Security Flaw Exposes Games and Crypto Wallets, Urging Immediate Action

A vulnerability in the Unity game engine could allow malicious code to target Android users' crypto wallets, with patches being rolled out to fix the issue. Users are advised to update their games, avoid sideloading apps, and practice good security hygiene to protect their wallets. The vulnerability affects Unity projects dating back to 2017 and could potentially lead to device compromise or credential theft.

Beware of Texting Scams: Protect Yourself from Digital Deception
technology1 year ago

Beware of Texting Scams: Protect Yourself from Digital Deception

The FBI warns against replying to unknown or suspicious text messages, which are increasingly used by organized criminal gangs for scams like fraud and romance schemes. Experts recommend verifying sender identities independently and using tools like Australia's Truyu app or MalwareBytes' Scam Guard to detect and prevent these scams, which pose significant risks to personal data and finances.