en
Feedback
Android Security & Malware

Android Security & Malware

Open in Telegram

πŸ“ˆ Analytical overview of Telegram channel Android Security & Malware

Channel Android Security & Malware (@androidmalware) in the English language segment is an active participant. Currently, the community unites 45 067 subscribers, ranking 2 893 in the Technologies & Applications category and 655 in the USA region.

πŸ“Š Audience metrics and dynamics

Since its creation on Π½Π΅Π²Ρ–Π΄ΠΎΠΌΠΎ, the project has demonstrated rapid growth, gathering an audience of 45 067 subscribers.

According to the latest data from 31 August, 2026, the channel demonstrates stable activity. Although there has been a change in the number of participants by 322 over the last 30 days and by 0 over the last 24 hours, overall reach remains high.

  • Verification status: Not verified
  • Engagement rate (ER): The average audience engagement rate is 10.72%. Within the first 24 hours after publication, content typically collects 4.21% reactions from the total number of subscribers.
  • Post reach: On average, each post receives 4 833 views. Within the first day, a publication typically gains 1 895 views.
  • Reactions and interaction: The audience actively supports content: the average number of reactions per post is 14.
  • Thematic interests: Content is focused on key topics such as cve-2025, exploit, rat, trojan, bypass.

πŸ“ Description and content policy

The author describes the resource as a platform for expressing subjective opinions:
β€œMobile cybersecurity channel Links: https://linktr.ee/mobilehacker Contact: mobilehackerofficial@gmail.com”

Thanks to the high frequency of updates (latest data received on 01 September, 2026), the channel maintains relevance and a high level of publication reach. Analytics show that the audience actively interacts with content, making it an important point of influence in the Technologies & Applications category.

45 067
Subscribers
No data24 hours
-97 days
+32230 days
Posts Archive
Bad Connection: Uncovering how global mobile networks themselves have become surveillance infrastructure to spy on location of targets https://citizenlab.ca/research/uncovering-global-telecom-exploitation-by-covert-surveillance-actors/

FakeWallet crypto stealer spreading through iOS apps in the App Store https://securelist.com/fakewallet-cryptostealer-ios-app-store/119474/

MiningDropper – A Global Modular Android Malware Campaign Operating at Scale https://cyble.com/blog/miningdropper-global-modular-android-malware/

Lorikazz: An Android TV and STB botnet using Tor .onion C2, ENS resolution, and bundled ELF payloads disguised as system libraries to hijack set-top boxes for proxyware operations https://github.com/PaloAltoNetworks/Unit42-timely-threat-intel/blob/main/2026-04-13-LORIKAZZ-ANDROID-IOT.txt

MalFixer: toolkit for inspecting and recovering malformed Android APK files (repairs corrupted ZIP entries, decodes and reconstructs malformed Android manifests, and extracts or sanitises problematic asset files) https://github.com/Cleafy/Malfixer

Pre-installed C2 Infrastructure and RAT Payload on Android Projectors https://github.com/Kavan00/Android-Projector-C2-Malware

Giving an Agent a Rooted Android Phone https://workers.io/blog/autonomous-mobile-pentesting/

Mirax: a new Android RAT turning infected devices into potential residential proxy nodes https://www.cleafy.com/cleafy-labs/mirax-a-new-android-rat-turning-infected-devices-into-potential-residential-proxy-nodes

Intent redirection vulnerability in third-party EngageLab SDK exposed millions of Android wallets to potential risk https://www.microsoft.com/en-us/security/blog/2026/04/09/intent-redirection-vulnerability-third-party-sdk-android/

Hack-For-Hire Operation Linked to BITTER APT (Android ProSpy spyware) https://www.lookout.com/threat-intelligence/article/bitter-hack-for-hire

Canis C2 Exposed: Previously Undocumented Cross-Platform Surveillance Framework Targeting Japan pivoting from Android sample https://hunt.io/blog/canis-c2-exposed-cross-platform-surveillance-framework-japan

PoC of DarkSword iOS exploit tested on iOS 17.1.1 - 26.0.1 https://github.com/rooootdev/lara

Analysis of cifrat: could this be an evolution of a mobile RAT? https://cert.pl/en/posts/2026/04/cifrat-analysis/

Operation NoVoice: Rootkit Tells No Tales (link to Android Triada family) https://www.mcafee.com/blogs/other-blogs/mcafee-labs/new-research-operation-novoice-rootkit-malware-android/

Analysis of Android FvncBot banker campaign targeting Polish users https://cert.pl/en/posts/2026/03/fvncbot-analysis/