Skip to main content

Tag: mobile security

131 articles

Smartphone on a table with screen on, showing a blurred webpage in a minimalist room with soft daylight.

Android 17 Bolsters Browsing Privacy with ECH Support

Android 17 just got a major boost to browsing privacy with the addition of Encrypted Client Hello (ECH) support, which teams up with private DNS to keep your online activities under wraps by hiding the domain names you visit. This means you can say goodbye to being profiled by advertisers and hello to a more private browsing experience.

Analyst 207
Smartphone sits on retail store counter amidst blurred customer activity.

AnonyMousKIT Phishing Service Exploits Voice AI to Harvest iPhone Passcodes

Meet AnonyMousKIT, a sneaky phishing service that's exploiting voice AI to trick iPhone users into spilling their passcodes, fueling a massive operation with over 500 domains and 168 reseller brands. This clever scam uses stolen device info to craft convincing emails and texts that help crooks unlock stolen Apple devices.

Analyst 207
Hand hovers over smartphone displaying passkey management interface on screen.

WhatsApp Bolsters Sign-In Security with Multi-Device Passkey Support

Big news for WhatsApp users: you can now use multiple passkeys across iOS and Android devices to securely log into your account, making it even easier to protect yourself from phishing and account takeovers. This update allows you to manage multiple credentials directly in the app, streamlining your sign-in experience.

Analyst 207
Person holds Android smartphone with blank screen in a neutral background.

ToxicPanda Malware Exploits VPN Permissions to Evade Google Play Security Checks

Meet ToxicPanda, a sneaky malware that's evolved to outsmart Google Play's security checks by exploiting VPN permissions and controlling device traffic. This cunning threat can now target nearly 350 apps and execute over 160 remote commands, putting your mobile security at risk.

Analyst 207
Car interior with head unit screen displaying a blank interface, dashboard, center console, and plugged-in smartphone…

Malware Targets Automotive Head Units

Kaspersky uncovered a surprising new threat in June 2026: a piece of Android malware that targets the Android-based head units found in many cars, using a legitimate system app called TWCore as its unwitting accomplice. This sneaky malware piggybacks on TWCore's update process to spread its reach.

Analyst 207
In-vehicle infotainment system screen displaying a software update interface on a muted-colored car dashboard.

Malware Targets Android Car Systems Through Built-In Updaters

Malware is sneaking into Android car systems through built-in updaters, allowing hackers to wreak havoc on unsuspecting drivers. This sneaky attack was recently discovered by Kaspersky researchers, who linked it to a notorious ad-fraud operation called BADBOX.

Analyst 207
Cracked smartphone lies on cluttered desk surrounded by scattered papers and office supplies.

ToxicPanda Malware Expands Android Banking Attacks Globally

Meet ToxicPanda 2.0, a highly sophisticated Android banking trojan that's taking global attacks to the next level with an arsenal of 167 remote commands and advanced PIN-harvesting capabilities. This upgraded malware can infiltrate over 140 banking and crypto apps, putting your sensitive info at risk.

Analyst 207
Person holding smartphone with blank screen, thumb hovering, in a blurred public setting.

ToxicPanda Malware Expands Target List to 140+ Banking and Crypto Apps

Meet ToxicPanda 2.0, a sneaky new Android banking Trojan that's expanded its target list to over 140 banking and crypto apps, allowing attackers to swipe PINs, lock devices, and gain shell-level access. This upgraded malware is particularly alarming, as it operates seamlessly within Android, making it a stealthy threat.

Analyst 207
Smartphone with blank screen on neutral-colored surface.

TikTok Reversal Sparks Mobile Security Concerns

TikTok's recent U.S. entity shift has done little to alleviate mobile security concerns, as its privacy policy still raises red flags about invasive data collection and usage. Expert Matt Stern warns that the app's practices remain a threat to user data.

Analyst 207
Smartphone with blurred screen on quiet workspace surface surrounded by papers and coffee cup.

Apple patches image-processing flaw exploited in spyware campaigns

Apple just patched a major security flaw in its ImageIO system that could let attackers run code on your device - and it's already been used in sneaky spyware campaigns targeting high-profile targets.

Analyst 207
Smartphone on a plain surface with blurred cityscape in background.

UNISOC Modem Flaw Enables Remote Code Execution

A newly discovered flaw in UNISOC modem firmware can be exploited to execute arbitrary code with kernel privileges, allowing hackers to gain deep access to Android devices. Simply making a video call to a vulnerable phone can trigger the attack.

Analyst 207
Smartphone on cluttered office desk with cityscape background through window.

Unisoc Exploit Chain Grants Attackers Full Android Kernel Access

Security researchers have uncovered a two-stage exploit chain that can give attackers full access to the Android kernel on devices using Unisoc modem firmware, and alarmingly, the vendor has remained unresponsive to disclosure efforts. This chain can be triggered by a simple malformed video call, putting countless devices at risk.

Analyst 207
Person sits at desk with laptop and papers in a neutral setting.

Apple Alerts 110 Countries to Mercenary Spyware Threats

Apple just sounded the alarm for users in 110 countries, warning them they've been targeted by highly sophisticated mercenary spyware attacks that are among the most advanced digital threats out there. This latest alert is part of a multi-year effort to protect users, with notifications now sent to customers in over 150 countries.

Analyst 207
iPhone on a neutral surface with soft ambient lighting and subtle shadows.

Apple Warns Users of Mercenary Spyware Attacks on iPhones

Got a warning from Apple about a mercenary spyware attack on your iPhone? This means hackers are trying to secretly access your device, and Apple is stepping in to alert and protect you.

Analyst 207
Smartphone screen displays messaging conversation with warning indicator and response options.

WhatsApp Deploys On-Device AI to Flag Potential Scam Messages

Meet Scam Alert, WhatsApp's new on-device AI feature that helps you spot potential scam messages - and take action to protect yourself. This optional feature flags suspicious messages from unknown senders, giving you the power to block, report, or ignore them.

Analyst 207
Person sits in dimly lit living room, staring at blank smartphone screen with a somber expression.

Malware Combo Targets Android Users With Loans, Credit Card Theft

In just 13 minutes, a sophisticated scam combining malware and social engineering tricked Android users into handing over their accounts and credit card info, with the thieves monetizing stolen cards in real time. The attack started with a convincing phone call from someone posing as a bank employee, leading victims to unwittingly download a remote administration tool masquerading as a legitimate app.

Analyst 207
Smartphone screen displays a notification on a blurred city street background.

Google Chrome Clamps Down on 7 Billion Daily Android Notification Scams

Google Chrome just dealt a major blow to scammers, blocking over 7 billion unwanted Android notifications daily in the first quarter of 2026. This massive reduction was made possible by Chrome's enhanced anti-abuse systems and notification controls.

Analyst 207
Close-up of a partially disassembled cellular IoT device with exposed internal components and a visible SIM card on a…

Malicious SIMs Exploit Cellular IoT Devices via Hidden Modem Interface

Researchers uncovered a shocking vulnerability in cellular IoT devices, finding that malicious SIMs can exploit hidden modem interfaces to run code on the device, thanks to a little-known proactive capability defined in cellular communication specs. Nine out of 26 tested devices, including some popular phones, were susceptible to this type of attack.

Analyst 207
Smartphone on cluttered desk with blank screen in soft daylight.

Mobile Malware Attacks Decline, Banking Trojans Persist

Mobile malware attacks may be on the decline, but don't let your guard down - over 1.99 million mobile devices were still threatened by malware, adware, or unwanted software in the second quarter alone. Banking Trojans, in particular, remain a persistent threat, with over 93,000 malicious packages detected.

Analyst 207
Darkened room with multiple screens and devices, individuals huddled around cluttered table with notes and papers.

BTMOB Malware Ecosystem Fractures as Resellers Exploit Source Code

The BTMOB malware ecosystem has shattered into a patchwork of fragmented offerings, morphing from a single, centrally operated service to a chaotic mix of official releases, private servers, and reseller panels. This dramatic shift comes after the source code was exploited, sending the once-coordinated operation into a tailspin.

Analyst 207
Modern lab with workstations and instruments, featuring a projected neural network diagram.

Malware Evolves with AI-Driven Tactics

Malware is getting a scary upgrade: attackers are harnessing AI-driven tactics to create a surge in suspicious and malicious activity, with tens of thousands of dubious AI "skills" already detected. This emerging threat landscape is multiplying opportunities for hackers to exploit, making it a critical concern for anyone online.

Analyst 207
Man stands in a courthouse holding a smartphone with a blank screen.

US Prosecutes Man for Using Phone Wipe Feature at Border

A man is facing prosecution for using his phone's wipe feature at the border, specifically with GrapheneOS, a custom Android operating system that prioritizes security. He provided border officials with a code that deliberately erased his phone's contents, sparking a criminal charge.

Analyst 207
Dimly lit server room with exposed circuit boards and tangled cables.

Flying Eagle Android RAT Source Code Circulates, 170 Servers Compromised

Researchers have uncovered a massive operation linked to the Flying Eagle Android RAT, with 170 internet servers compromised, allowing hackers to capture sensitive info, record screens, and even impersonate legitimate apps. This powerful toolkit can be used to create customized malware that steals payment passwords, keystrokes, and more.

Analyst 207
Smartphone on a cluttered desk with laptop and notepad in background.

Invisible Screen Text Exposes Android AI Agents to Code Injection Attacks

Researchers found that a simple payload could launch a code injection attack on four open-source Android agent frameworks, successfully executing commands on the host's system in every trial. This alarming vulnerability allows attackers to exploit AI agents by manipulating text on the screen, turning a harmless string into a malicious command.

Analyst 207