Malware found pre-installed on low-cost Android phones
Researchers have discovered malware embedded in the firmware of inexpensive Android smartphones, allowing attackers to remotely install apps, commit ad fraud, and use devices as residential proxies. The malware, called 'Midnight Mimosa,' is present on devices with MediaTek chips and system-level privileges. It affected thousands of devices in over 150 countries and cannot be removed by users. Firmware updates from some manufacturers fixed the issue, but the source of the supply-chain compromise is unclear.
- Malware embedded in firmware of budget Android devices
- Attackers gain system access and silent installation capability
- Thousands of affected phones across more than 150 countries
- Victims primarily in Mexico, France, Italy, US, and others
- Some manufacturers released updates to remove the malware
Sources covering this
In this story
More in Cybersecurity
US and allies disrupt Chinese hacking tools targeting infrastructure
US authorities and international partners have seized domains and tools used by China's Integrity Technology Group to support…
AI-powered attacks target South Korean banks
A cyberattack campaign targeting South Korean financial institutions used AI-based tools to steal personal data, CrowdStrike reported.
Google promotes passkeys as a password alternative
Google is highlighting passkeys as a faster and safer alternative to traditional passwords for its accounts.
GitHub updates bug bounty structure, launches VIP researcher program
GitHub has restructured its Security Bug Bounty Program, introducing a permanent VIP program for researchers who provide high-quality,…