Tag: android
-
GitHub’s AI agent found 24 Android app vulnerabilities
GitHub Security Lab researcher Kevin Stubbings built custom AI-driven audit workflows, called taskflows, on top of the lab’s open source Taskflow Agent, and used them to … First seen on helpnetsecurity.com Jump to article: www.helpnetsecurity.com/2026/09/29/github-ai-android-app-vulnerabilities/
-
File Notification Attacks Let Hackers Track Keystrokes and Website Visits on Linux, Windows and macOS
Researchers have disclosed a new class of cross-platform side-channel attacks that exploit file-notification mechanisms in Linux, Windows, macOS, and Android to infer sensitive user and system activities. These attacks can expose details such as keystroke timing, application launches, website visits, USB usage, VPN activity, printing, and other behaviors, even when the attacker lacks administrative privileges.…
-
RatHat Android Malware Console Uses Gemini to Identify Higher-Value Victims
RatHat’s operators build and publish the Android banking trojan and control infected phones from a web console, according to security company Cleafy. Cleafy has traced nearly 100 deployments of that console since April 2026. It said this fits a malware-as-a-service model, in which each customer runs a separate copy.The console stores what the malware collects…
-
RatHat Android Malware Console Uses Gemini to Identify Higher-Value Victims
RatHat’s operators build and publish the Android banking trojan and control infected phones from a web console, according to security company Cleafy. Cleafy has traced nearly 100 deployments of that console since April 2026. It said this fits a malware-as-a-service model, in which each customer runs a separate copy.The console stores what the malware collects…
-
ViewSonic vCast Vulnerabilities Let Attackers Gain Full Device Control Without Authentication
The CERT Coordination Center (CERT/CC) has revealed a chain of three vulnerabilities in ViewSonic’s vCast software that could enable unauthenticated attackers on a shared network to steal displayed screen content, install malicious Android applications, and ultimately gain full control of affected ViewBoard smart displays. These vulnerabilities, tracked as VU#234131, affect vCast, the wireless casting and…
-
RemControl Banking Trojan Gives Attackers Remote Control of Android Devices
The newly-discovered trojan abuses the Android Accessibility Service to gain control over victim devices and collect sensitive banking credentials First seen on infosecurity-magazine.com Jump to article: www.infosecurity-magazine.com/news/banking-trojan-remote-control/
-
Unpatched OnePlus Flaws Let Installed Android Apps Gain Root Without Permissions
A OnePlus 15 running the latest OxygenOS can be rooted by a malicious app the owner installs, one that asks for no special permissions. A researcher, Rasmus Moorats, chained two flaws in OnePlus’s own software to gain root access, the highest level of control over an Android phone.OnePlus told him the same flaws affect many…
-
Corp MDM Spyware Targets Logistics Firms, Steals New SMS and Redirects Calls
The logistics sector has become the target of a new malicious cyber campaign that distributes an Android spyware codenamed Corp MDM.According to Have I Been Squatted, the campaign uses fake Google Play pages branded as CEVA and TKW Logistics to distribute an Android Package Kit (APK) file that’s dressed up as a system service. The…
-
New Android malware RemControl steals banking PINs and blocks removal attempts
A new Android banking trojan called RemControl tricks victims into installing a fake TV app, then takes control of their phones to steal banking PINs, Group-IB has found. … First seen on helpnetsecurity.com Jump to article: www.helpnetsecurity.com/2026/09/24/remcontrol-android-banking-trojan-fake-tv-app/
-
RemControl Android Malware Targets 30+ Banking Apps to Steal PINs and Credentials
A newly uncovered Android banking trojan dubbed RemControl is targeting customers of more than 30 financial institutions across Europe, the Middle East, and Canada. The malware combines fake Google Play pages, Android Accessibility Service abuse, credential-stealing overlays, real-time screen streaming, and remote-control functions to compromise mobile banking sessions. The company tracks the operator behind the…
-
RatHat Android Malware Uses AI to Target Banking Credentials in Real Time
RatHat Android malware uses generative AI to navigate infected devices, steal banking credentials, intercept OTP codes and reinstall itself after removal again. First seen on hackread.com Jump to article: hackread.com/rathat-android-malware-ai-banking-credentials/
-
Google Fined $463M Over EU Location Data Practices
Irish DPC Says Google Unlawfully Processed and Retained Users’ Location Data. Ireland’s Data Protection Commission fined Google 403 million euros after finding GDPR violations in its processing, retention and disclosure of location data across Web & App Activity, Location History and Android Location Accuracy. First seen on govinfosecurity.com Jump to article: www.govinfosecurity.com/google-fined-463m-over-eu-location-data-practices-a-32879
-
Google Wants Android Apps to Look Beyond the Security Patch Date
Google’s new Android security libraries let apps and administrators inspect patch status by component instead of relying on a single security patch date. The post Google Wants Android Apps to Look Beyond the Security Patch Date appeared first on TechRepublic. First seen on techrepublic.com Jump to article: www.techrepublic.com/article/news-google-android-component-security-patch-checks/
-
Googlebook – Googles neue Notebooks nutzen Android als Unterbau
Google schafft mit den Googlebooks eine neue Notebook-Kategorie im Premiumsegment, die sich eines Android-basierten Tech-Stacks bedient. First seen on computerbase.de Jump to article: www.computerbase.de/news/notebooks/googlebook-googles-neue-notebooks-nutzen-android-als-unterbau.99367
-
Googlebook – Googles neue Notebooks nutzen Android als Unterbau
Google schafft mit den Googlebooks eine neue Notebook-Kategorie im Premiumsegment, die sich eines Android-basierten Tech-Stacks bedient. First seen on computerbase.de Jump to article: www.computerbase.de/news/notebooks/googlebook-googles-neue-notebooks-nutzen-android-als-unterbau.99367
-
Android statt ChromeOS Googlebooks bringen Android auf Premium-Notebooks
Google schafft mit den Googlebooks eine neue Notebook-Kategorie im Premiumsegment, die sich eines Android-basierten Tech-Stacks bedient. First seen on computerbase.de Jump to article: www.computerbase.de/news/notebooks/googlebook-googles-neue-notebooks-nutzen-android-als-unterbau.99367
-
Android statt ChromeOS Googlebooks bringen Android auf Premium-Notebooks
Google schafft mit den Googlebooks eine neue Notebook-Kategorie im Premiumsegment, die sich eines Android-basierten Tech-Stacks bedient. First seen on computerbase.de Jump to article: www.computerbase.de/news/notebooks/googlebook-googles-neue-notebooks-nutzen-android-als-unterbau.99367
-
Android statt ChromeOS Googlebooks bringen Android auf Premium-Notebooks
Google schafft mit den Googlebooks eine neue Notebook-Kategorie im Premiumsegment, die sich eines Android-basierten Tech-Stacks bedient. First seen on computerbase.de Jump to article: www.computerbase.de/news/notebooks/googlebook-googles-neue-notebooks-nutzen-android-als-unterbau.99367
-
AI-Powered RatHat Android Trojan Steals Bank Credentials, PINs and MFA Codes
Researchers have identified a new Android banking Trojan called RatHat that utilizes artificial intelligence to automate device compromise and steal financial credentials, PINs, and one-time passcodes. Zimperium’s zLabs researchers analyzed this malware, which represents a significant evolution in Android threats. AI-Powered RatHat Android Trojan Unlike traditional malware that relies on fixed scripts, RatHat offers a…
-
RatHat Turns Android Accessibility Into an Attack Weapon
RatHat combines AI-driven screen control, Android debugging abuse and advanced credential theft to give attackers deep control of infected phones. RatHat is the new Android trojan you should know about. Zimperium researchers just published a breakdown of a strain they’ve traced to China-based operators, and what makes it different isn’t the credential theft, which is…
-
Researchers Find Security Risks in 73.6% of 61,500 Abandoned IoT Apps
Researchers have identified significant security and privacy risks across 61,500 abandoned Android Internet-of-Things (IoT) companion applications. Their study found that 73.6% of these apps contained at least one potential vulnerability, risky embedded resource, or insecure communication path. Risks in Abandoned IoT Apps Titled >>When Apps Outlive Vendors: Security Implications of IoT Abandonware,<< the study examines…
-
Android apps can now check security patches down to individual device components
Tags: androidNew AndroidX Security State libraries provide a more granular way to determine how securely patched an Android device is. The stable Security State v1.1.0 and Security State … First seen on helpnetsecurity.com Jump to article: www.helpnetsecurity.com/2026/09/18/google-androidx-security-state-libraries/
-
RatHat Android Malware Abuses ADB to Retain Shell Access After Uninstall
Cybersecurity researchers have flagged a new Android malware called RatHat that’s assessed to be operated by China-based threat actors and features an artificial intelligence (AI)-powered system to navigate and control compromised devices.”Distributed primarily via targeted smishing (SMS/text phishing) and malvertising campaigns leading to deceptive third-party download portals, RatHat uses First seen on thehackernews.com Jump to…
-
Breach Roundup: China Calls for Stronger AI Oversight
Also, Spain’s First AI Agent-Linked Data Breach, NightmareStresser Domains Seized. This week: a call for stronger AI oversight in China, an AI agent-linked breach in Spain, Cisco active exploits, Check Point patched flaws. NightmareStresser seized – again! South Korea data breach fines, AI made BEC attacks worse. An Android Trojan, an exploited Pixel flaw and…
-
New RatHat Android malware uses AI to automate device control
A new Android malware called RatHat has been discovered, targeting users with an AI-powered subsystem that helps operators remotely navigate compromised devices. First seen on bleepingcomputer.com Jump to article: www.bleepingcomputer.com/news/security/new-rathat-android-malware-uses-ai-to-automate-device-control/
-
New Chinese-Made ‘RatHat’ Android Malware Leverages AI to Steal Financial Data
Researchers at Zimperium have uncovered a new Android malware strain, dubbed RatHat, with spyware and backdoor capabilities First seen on infosecurity-magazine.com Jump to article: www.infosecurity-magazine.com/news/rathat-android-malware-ai-steal/
-
RatHat Abuses Android Wireless Debugging to Gain Shell Access and Steal Banking PINs
RatHat, a newly identified Android banking malware family that combines Accessibility abuse, local Android Debug Bridge (ADB) pairing, native shell-level components, and generative-AI-assisted interface automation. The operation appears linked to China-based threat actors and is primarily designed to steal banking credentials, payment PINs, one-time passwords, device-unlock secrets, and other high-value data from infected Android devices.…
-
Google fixes actively exploited Android zero-day on Pixel devices
Google has released the September 2026 security patches to address 110 vulnerabilities affecting its Pixel devices, including one zero-day flaw actively exploited in targeted attacks. First seen on bleepingcomputer.com Jump to article: www.bleepingcomputer.com/news/security/google-fixes-actively-exploited-android-zero-day-on-pixel-devices/
-
1.8M Android APKs Scanned for Hardcoded Secrets in Automated Attack
Attackers scanned 1.8 million Android APKs for hardcoded secrets, showing why developers need stronger credential management and production-build security. First seen on esecurityplanet.com Jump to article: www.esecurityplanet.com/threats/news-android-apps-hardcoded-secrets-credential-scanning/
-
Product showcase: mSecure makes one vault do more than remember passwords
mSecure is a password manager and data vault for storing credentials and other sensitive information. It is available for iOS, Android, macOS, and Windows, with data … First seen on helpnetsecurity.com Jump to article: www.helpnetsecurity.com/2026/09/15/product-showcase-msecure-password-manager/

