Tag: mobile security
131 articles

Android 17 Bolsters Browsing Privacy with ECH Support
Android 17 just got a major boost to browsing privacy with the addition of Encrypted Client Hello (ECH) support, which teams up with private DNS to keep your online activities under wraps by hiding the domain names you visit. This means you can say goodbye to being profiled by advertisers and hello to a more private browsing experience.

AnonyMousKIT Phishing Service Exploits Voice AI to Harvest iPhone Passcodes
Meet AnonyMousKIT, a sneaky phishing service that's exploiting voice AI to trick iPhone users into spilling their passcodes, fueling a massive operation with over 500 domains and 168 reseller brands. This clever scam uses stolen device info to craft convincing emails and texts that help crooks unlock stolen Apple devices.

WhatsApp Bolsters Sign-In Security with Multi-Device Passkey Support
Big news for WhatsApp users: you can now use multiple passkeys across iOS and Android devices to securely log into your account, making it even easier to protect yourself from phishing and account takeovers. This update allows you to manage multiple credentials directly in the app, streamlining your sign-in experience.

ToxicPanda Malware Exploits VPN Permissions to Evade Google Play Security Checks
Meet ToxicPanda, a sneaky malware that's evolved to outsmart Google Play's security checks by exploiting VPN permissions and controlling device traffic. This cunning threat can now target nearly 350 apps and execute over 160 remote commands, putting your mobile security at risk.

Malware Targets Automotive Head Units
Kaspersky uncovered a surprising new threat in June 2026: a piece of Android malware that targets the Android-based head units found in many cars, using a legitimate system app called TWCore as its unwitting accomplice. This sneaky malware piggybacks on TWCore's update process to spread its reach.

Malware Targets Android Car Systems Through Built-In Updaters
Malware is sneaking into Android car systems through built-in updaters, allowing hackers to wreak havoc on unsuspecting drivers. This sneaky attack was recently discovered by Kaspersky researchers, who linked it to a notorious ad-fraud operation called BADBOX.

ToxicPanda Malware Expands Android Banking Attacks Globally
Meet ToxicPanda 2.0, a highly sophisticated Android banking trojan that's taking global attacks to the next level with an arsenal of 167 remote commands and advanced PIN-harvesting capabilities. This upgraded malware can infiltrate over 140 banking and crypto apps, putting your sensitive info at risk.

ToxicPanda Malware Expands Target List to 140+ Banking and Crypto Apps
Meet ToxicPanda 2.0, a sneaky new Android banking Trojan that's expanded its target list to over 140 banking and crypto apps, allowing attackers to swipe PINs, lock devices, and gain shell-level access. This upgraded malware is particularly alarming, as it operates seamlessly within Android, making it a stealthy threat.

TikTok Reversal Sparks Mobile Security Concerns
TikTok's recent U.S. entity shift has done little to alleviate mobile security concerns, as its privacy policy still raises red flags about invasive data collection and usage. Expert Matt Stern warns that the app's practices remain a threat to user data.

Apple patches image-processing flaw exploited in spyware campaigns
Apple just patched a major security flaw in its ImageIO system that could let attackers run code on your device - and it's already been used in sneaky spyware campaigns targeting high-profile targets.

UNISOC Modem Flaw Enables Remote Code Execution
A newly discovered flaw in UNISOC modem firmware can be exploited to execute arbitrary code with kernel privileges, allowing hackers to gain deep access to Android devices. Simply making a video call to a vulnerable phone can trigger the attack.

Unisoc Exploit Chain Grants Attackers Full Android Kernel Access
Security researchers have uncovered a two-stage exploit chain that can give attackers full access to the Android kernel on devices using Unisoc modem firmware, and alarmingly, the vendor has remained unresponsive to disclosure efforts. This chain can be triggered by a simple malformed video call, putting countless devices at risk.

Apple Alerts 110 Countries to Mercenary Spyware Threats
Apple just sounded the alarm for users in 110 countries, warning them they've been targeted by highly sophisticated mercenary spyware attacks that are among the most advanced digital threats out there. This latest alert is part of a multi-year effort to protect users, with notifications now sent to customers in over 150 countries.

Apple Warns Users of Mercenary Spyware Attacks on iPhones
Got a warning from Apple about a mercenary spyware attack on your iPhone? This means hackers are trying to secretly access your device, and Apple is stepping in to alert and protect you.

WhatsApp Deploys On-Device AI to Flag Potential Scam Messages
Meet Scam Alert, WhatsApp's new on-device AI feature that helps you spot potential scam messages - and take action to protect yourself. This optional feature flags suspicious messages from unknown senders, giving you the power to block, report, or ignore them.

Malware Combo Targets Android Users With Loans, Credit Card Theft
In just 13 minutes, a sophisticated scam combining malware and social engineering tricked Android users into handing over their accounts and credit card info, with the thieves monetizing stolen cards in real time. The attack started with a convincing phone call from someone posing as a bank employee, leading victims to unwittingly download a remote administration tool masquerading as a legitimate app.

Google Chrome Clamps Down on 7 Billion Daily Android Notification Scams
Google Chrome just dealt a major blow to scammers, blocking over 7 billion unwanted Android notifications daily in the first quarter of 2026. This massive reduction was made possible by Chrome's enhanced anti-abuse systems and notification controls.

Malicious SIMs Exploit Cellular IoT Devices via Hidden Modem Interface
Researchers uncovered a shocking vulnerability in cellular IoT devices, finding that malicious SIMs can exploit hidden modem interfaces to run code on the device, thanks to a little-known proactive capability defined in cellular communication specs. Nine out of 26 tested devices, including some popular phones, were susceptible to this type of attack.

Mobile Malware Attacks Decline, Banking Trojans Persist
Mobile malware attacks may be on the decline, but don't let your guard down - over 1.99 million mobile devices were still threatened by malware, adware, or unwanted software in the second quarter alone. Banking Trojans, in particular, remain a persistent threat, with over 93,000 malicious packages detected.

BTMOB Malware Ecosystem Fractures as Resellers Exploit Source Code
The BTMOB malware ecosystem has shattered into a patchwork of fragmented offerings, morphing from a single, centrally operated service to a chaotic mix of official releases, private servers, and reseller panels. This dramatic shift comes after the source code was exploited, sending the once-coordinated operation into a tailspin.

Malware Evolves with AI-Driven Tactics
Malware is getting a scary upgrade: attackers are harnessing AI-driven tactics to create a surge in suspicious and malicious activity, with tens of thousands of dubious AI "skills" already detected. This emerging threat landscape is multiplying opportunities for hackers to exploit, making it a critical concern for anyone online.

US Prosecutes Man for Using Phone Wipe Feature at Border
A man is facing prosecution for using his phone's wipe feature at the border, specifically with GrapheneOS, a custom Android operating system that prioritizes security. He provided border officials with a code that deliberately erased his phone's contents, sparking a criminal charge.

Flying Eagle Android RAT Source Code Circulates, 170 Servers Compromised
Researchers have uncovered a massive operation linked to the Flying Eagle Android RAT, with 170 internet servers compromised, allowing hackers to capture sensitive info, record screens, and even impersonate legitimate apps. This powerful toolkit can be used to create customized malware that steals payment passwords, keystrokes, and more.

Invisible Screen Text Exposes Android AI Agents to Code Injection Attacks
Researchers found that a simple payload could launch a code injection attack on four open-source Android agent frameworks, successfully executing commands on the host's system in every trial. This alarming vulnerability allows attackers to exploit AI agents by manipulating text on the screen, turning a harmless string into a malicious command.