Skip to main content
← All Articles

Tag

#Android

27 articles

Advertisement

MEDIUM
Malware

ToxicPanda 2.0 Android Malware Abuses Wireless ADB and VPN

ToxicPanda 2.0 Android malware uses VPN permissions to block Google Play and abuses Wireless ADB to gain shell access and deploy overlays.

Runtime Rebel Intel
3 min read · Aug 23, 2026
Android Car Head Unit Malware Spreads via Built-In Updaters
MEDIUM
Malware

Android Car Head Unit Malware Spreads via Built-In Updaters

Kaspersky discovered a new malware family targeting Android car head units via DoFun firmware updaters to build an ad fraud and proxy botnet.

Runtime Rebel Intel
2 min read · Aug 22, 2026
Unisoc Modem Exploit Chain: Android Takeover via Video Call
HIGH
Vulnerabilities

Unisoc Modem Exploit Chain: Android Takeover via Video Call

An exploit chain targeting Unisoc modems allows remote Android device takeover through a malicious video call, requiring victim interaction.

Runtime Rebel Intel
4 min read · Aug 18, 2026
Kimwolf v7 Botnet Evolves with Advanced DDoS and C2 Resilience
HIGH
Malware

Kimwolf v7 Botnet Evolves with Advanced DDoS and C2 Resilience

Kimwolf v7, an Android/IoT botnet, enhances DDoS capabilities with HTTP/2 fingerprinting and robust, multi-layered C2 infrastructure.

Runtime Rebel Intel
4 min read · Aug 11, 2026
HIGH
Vulnerabilities

Pixel 9 Zero-Click RCE: Exploiting Dolby Unified Decoder

Project Zero details a zero-click exploit chain targeting Google Pixel 9 via the Dolby Unified Decoder, leading to arbitrary code execution.

Runtime Rebel Intel
3 min read · Aug 8, 2026
HIGH
Threat Intel

Project Zero Uncovers Android 0-Click Exploit Chain Ecosystem Weaknesses

Project Zero details findings from a Pixel 9 0-click exploit chain, highlighting critical Android ecosystem issues and proposing security enhancements.

Runtime Rebel Intel
4 min read · Aug 8, 2026

Advertisement

Fake Bahrain Alert Apps Deploy Android Surveillance Malware
HIGH
Malware

Fake Bahrain Alert Apps Deploy Android Surveillance Malware

Analyzing fake Bahrain alert apps distributing four-stage Android surveillance malware via phony app stores, exploiting geopolitical tensions for extensive data…

Runtime Rebel Intel
4 min read · Jul 22, 2026
RedWing MaaS: Android Bank Fraud via Telegram Rental Service Analysis
HIGH
Malware

RedWing MaaS: Android Bank Fraud via Telegram Rental Service Analysis

RedWing MaaS is an Android bank fraud malware-as-a-service rented on Telegram, enabling low-skill attackers to steal banking logins and OTPs.

Runtime Rebel Intel
4 min read · Jul 7, 2026
CVE-2026-46242: Linux Kernel Bad Epoll Flaw Grants Root on Servers, Android
HIGH
Vulnerabilities

CVE-2026-46242: Linux Kernel Bad Epoll Flaw Grants Root on Servers, Android

Critical Linux kernel 'Bad Epoll' flaw (CVE-2026-46242) allows unprivileged users to gain root access on servers, desktops, and Android devices. Patch now.

Runtime Rebel Intel
4 min read · Jul 3, 2026
INFO
Compliance

Google's €4.1B EU Fine Stands: Android Antitrust Implications

Google loses final appeal against its €4.1 billion EU antitrust fine concerning Android's dominance. Understand the compliance implications for tech giants.

Runtime Rebel Intel
3 min read · Jul 2, 2026
AirDrop and Quick Share: Proximity Flaws Cause Crashes and Bypass Checks
HIGH
Vulnerabilities

AirDrop and Quick Share: Proximity Flaws Cause Crashes and Bypass Checks

Researchers found six security flaws in AirDrop and Quick Share, enabling nearby attackers to crash devices and bypass security checks without user interaction.

Runtime Rebel Intel
4 min read · Jun 30, 2026
MEDIUM
Threat Intel

Google Android Scam Detection: Real-Time AI Defense Against Fraud

Google introduces AI-powered Scam Detection for Android, utilizing on-device Gemini Nano to identify fraud patterns and protect users from voice-based phishing.

Runtime Rebel Intel
4 min read · Jun 3, 2026
CRITICAL
Vulnerabilities

Android June 2024 Update: CVE-2024-32896 Zero-Day Exploit Patched

Google fixes 124 vulnerabilities including an actively exploited Pixel firmware zero-day and critical RCE flaws in the June 2024 Android security update.

Runtime Rebel Intel
4 min read · Jun 2, 2026
Trapdoor Android Ad Fraud: 455 Apps Generate 659M Daily Bid Requests
MEDIUM
Malware

Trapdoor Android Ad Fraud: 455 Apps Generate 659M Daily Bid Requests

Researchers reveal the Trapdoor ad fraud scheme, involving 455 Android apps and 183 C2 domains generating over 600 million daily fraudulent bid requests.

Runtime Rebel Intel
4 min read · May 19, 2026
HIGH
Vulnerabilities

Pixel 10 0-Click Exploit Chain: Re-Targeting CVE-2025-54957 for Root

Analysis of a zero-click exploit chain targeting the Google Pixel 10, achieving root via an adapted Dolby vulnerability (CVE-2025-54957). Critical threat. Patch now.

Runtime Rebel Intel
4 min read · May 13, 2026
HIGH
Vulnerabilities

Android CVE-2026-0073: Critical System RCE Patch Guidance

Google addresses a critical zero-click RCE vulnerability (CVE-2026-0073) in the Android System component. Learn how to mitigate this high-impact security flaw.

Runtime Rebel Intel
3 min read · May 5, 2026
HIGH
Vulnerabilities

Android Dirty Stream Path Traversal: Detecting and Patching App Exploits

Microsoft identifies Dirty Stream vulnerabilities in Android apps, allowing path traversal and unauthorized file manipulation. Learn how to secure your apps.

Runtime Rebel Intel
4 min read · Apr 20, 2026
HIGH
Supply Chain

CVE-2024-21390: EngageLab SDK Vulnerability Risks Android Crypto Wallets

Microsoft reveals a vulnerability in the EngageLab SDK affecting millions of Android crypto wallet users, potentially allowing for private key theft.

Runtime Rebel Intel
3 min read · Apr 10, 2026
CRITICAL
Vulnerabilities

Android StrongBox DoS Vulnerability Patched – Update Now

A critical Denial-of-Service vulnerability in Android's StrongBox keymaster and Framework component has been patched. Immediate updates are crucial for device security.

Runtime Rebel Intel
4 min read · Apr 7, 2026
SparkCat Mobile Malware Variant Steals Crypto Recovery Phrases
HIGH
Malware

SparkCat Mobile Malware Variant Steals Crypto Recovery Phrases

A new SparkCat malware variant targets iOS and Android users, stealing crypto wallet recovery phrase images from compromised apps on official stores.

Runtime Rebel Intel
6 min read · Apr 3, 2026
HIGH
Malware

NoVoice Android Malware on Google Play: 2.3 Million Devices Infected

NoVoice Android malware, disguised in over 50 Google Play apps, infected 2.3 million devices, exhibiting aggressive adware and subscription fraud.

Runtime Rebel Intel
5 min read · Apr 1, 2026
Android Developer Identity Verification: New Google Play Mandates
INFO
Identity & Access

Android Developer Identity Verification: New Google Play Mandates

Google mandates identity verification for all Android developers to reduce malicious app distribution and improve Play Store transparency starting September.

Runtime Rebel Intel
4 min read · Mar 31, 2026
INFO
Threat Intel

Google Play Protect Advanced Flow for Android Sideloading

Google introduces Advanced Flow to Play Protect, enhancing security for Android sideloading to combat financial fraud and malicious APK installations.

Runtime Rebel Intel
3 min read · Mar 21, 2026
Google Android Security: 24-Hour Wait for Unverified Sideloading
INFO
Threat Intel

Google Android Security: 24-Hour Wait for Unverified Sideloading

Google introduces a mandatory 24-hour cooling-off period for sideloading unverified Android applications to mitigate malware and financial scams.

Runtime Rebel Intel
4 min read · Mar 20, 2026