Group-IB found the long-running banking trojan building a second app that shelters inside Android's employer workspace.
Bitdefender says Google Play's Early Access program shelters thousands of deceptive apps.
ThreatFabric details StreamRat, an Android trojan pushed through fake TV streaming ads that can seize device control.
OS-wide Encrypted Client Hello in Android 17 hides visited domains from carriers and Wi-Fi snoops.
Kaspersky finds a downloader pushed through built-in firmware updaters of Android dashboards, tied to the MoYu Group.
Unit 42 documents Kimwolf v7, a rebuild that hides DDoS floods behind browser fingerprints and Ethereum domains.
FBI identifies Popa Android botnet infecting millions of TV boxes through NetNut residential proxy service
A new automated testing framework reveals widespread traffic leaks, plaintext data transmission, and tracking behavior across 281 popular free Android…