Android Security & Malware
Mobile cybersecurity channel Links: https://linktr.ee/mobilehacker Contact: mobilehackerofficial@gmail.com
Show more📈 Analytical overview of Telegram channel Android Security & Malware
Channel Android Security & Malware (@androidmalware) in the English language segment is an active participant. Currently, the community unites 44 987 subscribers, ranking 2 893 in the Technologies & Applications category and 638 in the USA region.
📊 Audience metrics and dynamics
Since its creation on невідомо, the project has demonstrated rapid growth, gathering an audience of 44 987 subscribers.
According to the latest data from 15 September, 2026, the channel demonstrates stable activity. Although there has been a change in the number of participants by -34 over the last 30 days and by -1 over the last 24 hours, overall reach remains high.
- Verification status: Not verified
- Engagement rate (ER): The average audience engagement rate is 9.92%. Within the first 24 hours after publication, content typically collects 3.98% reactions from the total number of subscribers.
- Post reach: On average, each post receives 4 464 views. Within the first day, a publication typically gains 1 789 views.
- Reactions and interaction: The audience actively supports content: the average number of reactions per post is 30.
- Thematic interests: Content is focused on key topics such as cve-2025, exploit, rat, trojan, bypass.
📝 Description and content policy
The author describes the resource as a platform for expressing subjective opinions:
“Mobile cybersecurity channel
Links: https://linktr.ee/mobilehacker
Contact: mobilehackerofficial@gmail.com”
Thanks to the high frequency of updates (latest data received on 16 September, 2026), the channel maintains relevance and a high level of publication reach. Analytics show that the audience actively interacts with content, making it an important point of influence in the Technologies & Applications category.
Data loading in progress...
| Date | Subscriber Growth | Mentions | Channels | |
| 16 September | +1 | |||
| 15 September | +3 | |||
| 14 September | +7 | |||
| 13 September | 0 | |||
| 12 September | 0 | |||
| 11 September | 0 | |||
| 10 September | +2 | |||
| 09 September | +5 | |||
| 08 September | +2 | |||
| 07 September | +16 | |||
| 06 September | +17 | |||
| 05 September | +1 | |||
| 04 September | +3 | |||
| 03 September | +7 | |||
| 02 September | 0 | |||
| 01 September | +12 |
| 2 | Vwork: Weaponized Open-source Software as an Addon for Gigabud
https://www.group-ib.com/blog/vwork-app-cloning-gigabud-goldfactory/ | 1 845 |
| 3 | RCE in mexc Android app via Bypass URL validation to access the WebView, JS-Bridge with Path Traversal leads to Native-Library Cache Overwrite.
https://itis911.github.io/writeups/RCE-Mexc-Andriod-App.html | 3 617 |
| 4 | WeWorm: The first zero-click worm to spread through WeChat calls across iOS and Android
https://calif.io/research/weworm | 3 610 |
| 5 | Hagaseca: Inside a Packed Android RAT Loader
https://darkatlas.io/blog/hagaseca-inside-a-packed-android-rat-loader | 3 227 |
| 6 | TeleGapper is a black-box dynamic analysis tool for Telegram Mini Apps on Android devices
https://github.com/Mobile-IoT-Security-Lab/TeleGapper | 3 584 |
| 7 | 1-click could expose every contact saved on your Android, even if you never gave permission to access them (CVE-2026-28576)
Blog: https://www.mobilehackinglab.com/blog/cve-2026-28576-contacts-provider-sqli
Demo: https://www.youtube.com/shorts/nWzdx0uuULM
PoC APK: https://github.com/mobilehackinglab/CVE-2026-28576-poc | 3 436 |
| 8 | How to Copy and Backup RFID Access Cards and NFC Key Fobs with Chameleon Ultra
https://www.mobile-hacker.com/2026/09/07/chameleon-ultra-guide-to-rfid-reading-emulation-and-testing/ | 3 073 |
| 9 | Your photos can be accessed without unlocking your Android when you receive a WhatsApp video call [not fixed]
https://www.mobile-hacker.com/2026/09/02/whatsapp-lets-you-view-photos-without-unlocking-smartphone/ | 5 214 |
| 10 | Uncovering StreamRat: From Meta Ads to Full Device Takeover
https://www.threatfabric.com/blogs/from-meta-ads-to-full-device-takeover-uncovering-streamrat | 4 444 |
| 11 | Reproducing the Acode Zero-Day Vulnerability
-ACode is a simple code editor for Android
https://hackmd.io/@sal/Reproducing-the-Acode-Zero-Day-Vulnerability | 4 274 |
| 12 | Beware of fake Indeed interview apps used to install spyware
https://www.malwarebytes.com/blog/scams/2026/08/beware-of-fake-indeed-interview-apps-used-to-install-spyware | 4 102 |
| 13 | PolicyGapper: A Multi-Prompt LLM-Based App Privacy Compliance Analysis
https://github.com/Mobile-IoT-Security-Lab/PolicyGapper | 4 083 |
| 14 | How to Install Proxmark3 on the uConsole to read, write and clone some of RFID and NFC tokens
https://www.mobile-hacker.com/2026/08/31/how-to-install-proxmark3-on-the-clockworkpi-uconsole/ | 4 977 |
| 15 | JADX MCP: a MCP (Model Context Protocol) server as a jadx-gui plugin
https://github.com/0xdad0/jadx-mcp | 4 548 |
| 16 | Mesh network cache poisoning: exploiting BitChat's BLE authentication
Blog: https://barghest.asia/blog/bitchat-cache-poisoning/
PoC: https://github.com/BARGHEST-ngo/PoC_Bitchat1.15.0_iOS-BLEcache-poisoning | 6 957 |
| 17 | Malware targeting Android-based automotive head units spread through built-in firmware updates (botnet proxy malware)
https://securelist.com/android-head-unit-malware/121106/ | 6 466 |
| 18 | Manic: Blend between Banking Malware & Spyware
https://www.threatfabric.com/blogs/manic-blend-between-banking-malware-and-spyware | 6 429 |
| 19 | GhostBat RAT: 78 Victims, One Lazy Key, and a Firebase Named After India’s Ruling Party
https://medium.com/@singhbkn07/78-victims-one-lazy-key-and-a-firebase-named-after-indias-ruling-party-62cf0ad0380e | 5 447 |
| 20 | Can Someone Secretly Scan Your Payment and Access Card? I Tested It
Blog: https://www.mobile-hacker.com/2026/08/20/how-easy-is-it-to-scan-a-contactless-payment-and-access-card/
Video: https://youtu.be/pwzMFQLrTHU | 6 016 |
