Security Insights
Latest threat analysis, industry news, and security best practices from our expert team.
RatHat Android Malware Uses AI to Automate Device Control — Detection and Response Guide for Defenders
Introduction Security researchers have disclosed a new Android malware family dubbed RatHat — a remote access trojan (RAT) that distinguishe...
Mantax Otax Android Malware: Detecting File Encryption, Data Theft, and Harassment Campaigns
Mantax Otax Android Malware: Detecting File Encryption, Data Theft, and Harassment Campaigns A newly reported Android malicious software str...
MantaxOtax Android Malware: Ransomware-Spyware Hybrid — Detection, Containment, and Mobile IR Playbook
Introduction A newly documented Android malware family dubbed MantaxOtax is raising the stakes for mobile defense teams. Rather than special...
Google Play Early Access Abuse: Defending Against Deceptive Android Apps Pushing Fake Rewards and Casino Scams
Introduction Google Play's Early Access program — designed to let developers gather user feedback on unreleased applications — is being syst...
StreamRat Android Banking Trojan Spread via Meta Ads — Detection and Remediation Guide
StreamRat Android Banking Trojan Spread via Meta Ads — Detection and Remediation Guide What Happened ThreatFabric has disclosed a new Androi...
ToxicPanda Android Banking Trojan Abuses VPN Permissions and Blocks Google Play — Detection and Response Guide
ToxicPanda's Evolution: VPN Abuse, Play Protect Blocking, and a 349-App Target List The ToxicPanda Android banking trojan — a family we've t...
Android Car Malware Hijacks DoFun Head Unit Updaters for Ad Fraud and Proxy Botnet — Detection and Response Guide
Introduction Kaspersky researchers have disclosed a new malware family purpose-built to infect Android-based vehicle head unit firmware deve...
Manic Android Malware Uses Nearby Infected Devices as Exfiltration Fallback — Detection and Remediation Guide
Introduction A newly documented Android malware family dubbed Manic is actively targeting users across multiple European countries, and it i...
Kimwolf v7 Android/IoT Botnet: Detecting and Defending Against HTTP/2 DDoS Attacks That Mimic Legitimate Browsing
Introduction Palo Alto Networks Unit 42 has disclosed a significant evolution of the Kimwolf/AISURU botnet — version 7 — discovered in Febru...