en
Feedback
Android Security & Malware

Android Security & Malware

Open in Telegram

๐Ÿ“ˆ Analytical overview of Telegram channel Android Security & Malware

Channel Android Security & Malware (@androidmalware) in the English language segment is an active participant. Currently, the community unites 43 925 subscribers, ranking 3 072 in the Technologies & Applications category and 720 in the USA region.

๐Ÿ“Š Audience metrics and dynamics

Since its creation on ะฝะตะฒั–ะดะพะผะพ, the project has demonstrated rapid growth, gathering an audience of 43 925 subscribers.

According to the latest data from 20 June, 2026, the channel demonstrates stable activity. Although there has been a change in the number of participants by 233 over the last 30 days and by 13 over the last 24 hours, overall reach remains high.

  • Verification status: Not verified
  • Engagement rate (ER): The average audience engagement rate is 13.42%. Within the first 24 hours after publication, content typically collects 3.72% reactions from the total number of subscribers.
  • Post reach: On average, each post receives 5 896 views. Within the first day, a publication typically gains 1 636 views.
  • Reactions and interaction: The audience actively supports content: the average number of reactions per post is 13.
  • Thematic interests: Content is focused on key topics such as cve-2025, exploit, rat, trojan, bypass.

๐Ÿ“ Description and content policy

The author describes the resource as a platform for expressing subjective opinions:
โ€œMobile cybersecurity channel Links: https://linktr.ee/mobilehacker Contact: mobilehackerofficial@gmail.comโ€

Thanks to the high frequency of updates (latest data received on 21 June, 2026), the channel maintains relevance and a high level of publication reach. Analytics show that the audience actively interacts with content, making it an important point of influence in the Technologies & Applications category.

43 925
Subscribers
+1324 hours
+617 days
+23330 days
Posts Archive
New Android malware - NGate - relays NFC data from victimsโ€™ payment cards, via victimsโ€™ compromised mobile phones, to attacker's device waiting at an ATM to withdraw cash https://www.welivesecurity.com/en/eset-research/ngate-android-malware-relays-nfc-traffic-to-steal-cash/

Sophisticated phishing method targeted mobile users via Progressive Web Apps (iOS, Android) and WebAPKs (Android) to mimic banking apps. Installing WebAPK apps doesn't warn the victim about installing a third-party application and they even appear to have been installed from the Google Play store https://www.welivesecurity.com/en/eset-research/be-careful-what-you-pwish-for-phishing-in-pwa-applications/

The ColorOS Internet Browser (com.heytap.browser) app for Android allows a remote attacker to execute arbitrary JavaScript code PoC: https://github.com/actuator/com.heytap.browser

RCE on Xiaomi 13 Pro (CVE-2023-26324) ๐Ÿ‘‰Exploitation: 1) Open URL in WebView 2) Inject JavaScript 3) Execute JavaScript Interface functions from vulnerable GetApps to install & launch payload 4) Get shell ๐Ÿ‘‰Slides with PoC: https://media.defcon.org/DEF%20CON%2032/DEF%20CON%2032%20presentations/DEF%20CON%2032%20-%20Ken%20Gannon%20Ilyes%20Beghdadi%20-%20Xiaomi%20The%20Money%20Our%20Toronto%20Pwn2Own%20Exploit%20and%20Behind%20The%20Scenes%20Story.pdf

Exploiting Androidโ€™s Hardened Memory Allocator PoC: https://github.com/HexHive/scudo-exploitation Paper: https://nebelwelt.net/publications/files/24WOOT.pdf

Android Game Hacking: Increase money in Dude Theft Wars Shooting https://8ksec.io/hacking-android-games/

Dynamic Analysis Technique of Android Malware by Injecting Smali Gadgets Patch APK with logcat output as alternative to using Frida https://blogs.jpcert.or.jp/en/2024/08/smaligadget.html

The Way to Android Root: Exploiting Your GPU On Smartphone (CVE-2024-23380) [slides] https://i.blackhat.com/BH-US-24/Presentations/REVISED_US24-Gong-The-Way-to-Android-Root-Wednesday.pdf

5GBaseChecker: a security analysis framework that helps to hunt for 5G vulnerabilities https://github.com/SyNSec-den/5GBaseChecker

Google fixed Kernel RCE vulnerability in Android (CVE-2024-36971) that was most-likely used for targeted exploitation https://source.android.com/docs/security/bulletin/2024-08-01

LianSpy: new Android spyware targeting Russian users https://securelist.com/lianspy-android-spyware/113253/

BlankBot - a new Android banking trojan with screen recording, keylogging and remote control capabilities https://intel471.com/blog/blankbot-a-new-android-banking-trojan-with-screen-recording-keylogging-and-remote-control-capabilities

New Fileless Malware Framework "GhostHook" Targets Android Devices https://iverify.io/post/new-fileless-malware-framework-ghosthook-targets-android-devices

Introducing the new Mobile App Security Weakness Enumeration (MASWE). This brand new OWASP MAS resource bridges the gap between MASVS high-level controls and MASTG low-level testing, using a similar approach to CWEs. https://mas.owasp.org/news/2024/07/30/new-maswe/

Open Redirect in Login Redirect in MobSF (CVE-2024-41955) Update to MobSF v4.0.5. https://github.com/MobSF/Mobile-Security-Framework-MobSF/security/advisories/GHSA-8m9j-2f32-2vx4