Latest posts

Android Security & Malware
22 Sept, 11:01
Turn a Rooted Android Phone into an NFC Authenticator and Automation Tool for Your PC https://www.mobile-hacker.com/2026/09/21/turn-a-rooted-android-phone-into-an-nfc-authenticator-and-automation-tool-for-your-pc/Mobile HackerTurn a Rooted Android Phone into an NFC Authenticator and Automation Tool for Your PC - Mobile HackerDo you have an older rooted Android phone sitting unused in a drawer? Instead of leaving it there, you can turn it into a practical NFC reader and USB keyboard for your computer. With a custom Android app (NFC to HID), your phone can read the unique indentation…
Android Security & Malware
17 Sept, 15:08
RatHat: AI-Powered Mobile Threat is Here for Your Credentials & Bank Accounts https://zimperium.com/blog/rathat-ai-powered-mobile-threat-is-here-for-your-credentials-bank-accountsZimperiumRatHat: AI-Powered Mobile Threat is Here for Your Credentials & Bank Accountstrue
Android Security & Malware
14 Sept, 06:08
Mantax Otax: Indonesian Mobile Ransomware with Spyware Integration https://zimperium.com/blog/mantax-otax-indonesian-mobile-ransomware-with-spyware-integrationZimperiumMantax Otax: Indonesian Mobile Ransomware with Spyware Integrationtrue
Android Security & Malware
14 Sept, 06:04
Vwork: Weaponized Open-source Software as an Addon for Gigabud https://www.group-ib.com/blog/vwork-app-cloning-gigabud-goldfactory/Group-IBVwork: Weaponized Open-source Software as an Addon for GigabudHow the Gigabud Android banking trojan abuses Shelter, an open-source app cloner, and what that means for banks, users, and defenders.
Android Security & Malware
9 Sept, 13:37
RCE in mexc Android app via Bypass URL validation to access the WebView, JS-Bridge with Path Traversal leads to Native-Library Cache Overwrite. https://itis911.github.io/writeups/RCE-Mexc-Andriod-App.html
Android Security & Malware
9 Sept, 12:33
WeWorm: The first zero-click worm to spread through WeChat calls across iOS and Android https://calif.io/research/wewormCalifWeWormThe first zero-click worm to spread through WeChat calls across iOS and Android.
Android Security & Malware
9 Sept, 11:31
Hagaseca: Inside a Packed Android RAT Loader https://darkatlas.io/blog/hagaseca-inside-a-packed-android-rat-loader
Android Security & Malware
8 Sept, 12:11
TeleGapper is a black-box dynamic analysis tool for Telegram Mini Apps on Android devices https://github.com/Mobile-IoT-Security-Lab/TeleGapperGitHubGitHub - Mobile-IoT-Security-Lab/TeleGapper: Black Box Dynamic Analysis Telegram Mini App Tool to detect Privacy Policy ViolationsBlack Box Dynamic Analysis Telegram Mini App Tool to detect Privacy Policy Violations - Mobile-IoT-Security-Lab/TeleGapper
Android Security & Malware
8 Sept, 07:14
1-click could expose every contact saved on your Android, even if you never gave permission to access them (CVE-2026-28576) Blog: https://www.mobilehackinglab.com/blog/cve-2026-28576-contacts-provider-sqli Demo: https://www.youtube.com/shorts/nWzdx0uuULM PoC APK: https://github.com/mobilehackinglab/CVE-2026-28576-poc


Android Security & Malware
8 Sept, 05:38
How to Copy and Backup RFID Access Cards and NFC Key Fobs with Chameleon Ultra https://www.mobile-hacker.com/2026/09/07/chameleon-ultra-guide-to-rfid-reading-emulation-and-testing/Mobile HackerChameleon Ultra: Guide to RFID Reading, Emulation and Testing - Mobile HackerContactless cards and key fobs are now part of everyday life. They unlock apartment buildings, identify employees, open hotel rooms, record attendance and interact with electronic locks. Although many of these credentials look similar from the outside, the…
Android Security & Malware
2 Sept, 10:55
Your photos can be accessed without unlocking your Android when you receive a WhatsApp video call [not fixed] https://www.mobile-hacker.com/2026/09/02/whatsapp-lets-you-view-photos-without-unlocking-smartphone/Mobile HackerWhatsApp Lets You View Photos Without Unlocking Smartphone - Mobile HackerMost people assume that once their phone is locked, their photos are protected from anyone who picks up the device. However, a behavior discovered Jose Rodriguez shows that photos may be accessible during an incoming WhatsApp video call, even while the phone…
Android Security & Malware
2 Sept, 10:09
Uncovering StreamRat: From Meta Ads to Full Device Takeover https://www.threatfabric.com/blogs/from-meta-ads-to-full-device-takeover-uncovering-streamratThreatFabricUncovering StreamRat: From Meta Ads to Full Device TakeoverThreatFabric researchers have uncovered StreamRat, a new Android banking trojan promoted to Spanish-speaking users through Meta and TikTok advertisements.
Android Security & Malware
2 Sept, 10:02
Reproducing the Acode Zero-Day Vulnerability -ACode is a simple code editor for Android https://hackmd.io/@sal/Reproducing-the-Acode-Zero-Day-VulnerabilityHackMDReproducing the Acode Zero Day Vulnerability - HackMDHello friends, in this blog we’re going to talk about a challenge I took while learning Android Security. I took this challenge while following a really great Android security course on Hextree. The course is sponsored by Google, and the material is excellent…
Android Security & Malware
1 Sept, 18:37
Beware of fake Indeed interview apps used to install spyware https://www.malwarebytes.com/blog/scams/2026/08/beware-of-fake-indeed-interview-apps-used-to-install-spywareMalwarebytesBeware of fake Indeed interview apps used to install spywareScammers are posing as employers on Indeed to trick job seekers into installing fake Android interview apps that deliver malware.
Android Security & Malware
31 Aug, 19:33
PolicyGapper: A Multi-Prompt LLM-Based App Privacy Compliance Analysis https://github.com/Mobile-IoT-Security-Lab/PolicyGapperGitHubGitHub - Mobile-IoT-Security-Lab/PolicyGapper: This repository proposes a novel methodology for automated privacy compliance analysis…This repository proposes a novel methodology for automated privacy compliance analysis of mobile applications based on multi-prompt Large Language Model (LLM) cooperation. The framework applies to ...
Android Security & Malware
31 Aug, 06:16
How to Install Proxmark3 on the uConsole to read, write and clone some of RFID and NFC tokens https://www.mobile-hacker.com/2026/08/31/how-to-install-proxmark3-on-the-clockworkpi-uconsole/Mobile HackerHow to Install Proxmark3 on the ClockworkPi uConsole - Mobile HackerThe ClockworkPi uConsole is already an interesting portable Linux computer. By connecting a Proxmark3, it can also become portable RFID research for exploring and understanding contactless cards and tags, cloning them and identifying how different cards work…
Android Security & Malware
30 Aug, 17:44
JADX MCP: a MCP (Model Context Protocol) server as a jadx-gui plugin https://github.com/0xdad0/jadx-mcpGitHubGitHub - 0xdad0/jadx-mcp: MCP (Model Context Protocol) server as a jadx-gui plugin. Lets an AI client (Claude Code, Claude Desktop…MCP (Model Context Protocol) server as a jadx-gui plugin. Lets an AI client (Claude Code, Claude Desktop, or any MCP client) analyze the app currently loaded in jadx-gui. - 0xdad0/jadx-mcp
Android Security & Malware
22 Aug, 05:02
Mesh network cache poisoning: exploiting BitChat's BLE authentication Blog: https://barghest.asia/blog/bitchat-cache-poisoning/ PoC: https://github.com/BARGHEST-ngo/PoC_Bitchat1.15.0_iOS-BLEcache-poisoningBarghestBitChat cache poisoning and replay in Bluetooth meshBARGHEST found a cache poisoning attack in BitChat and replay flaw in BLE mesh synchronization that enabled durable network disruption before patching.
Android Security & Malware
21 Aug, 14:23
Malware targeting Android-based automotive head units spread through built-in firmware updates (botnet proxy malware) https://securelist.com/android-head-unit-malware/121106/
Android Security & Malware
21 Aug, 09:35
Manic: Blend between Banking Malware & Spyware https://www.threatfabric.com/blogs/manic-blend-between-banking-malware-and-spywareThreatFabricManic: Blend between Banking Malware & SpywareManic is a newly identified Android malware family with broad surveillance and remote-control capabilities, introducing an unusual Wi‑Fi mesh technique.
Related Channels
Other channels in the same section of the catalogue.
