uz
Feedback
Android Security & Malware

Android Security & Malware

Kanalga Telegramโ€™da oโ€˜tish

๐Ÿ“ˆ Telegram kanali Android Security & Malware analitikasi

Android Security & Malware (@androidmalware) Ingliz til segmentidagi kanali faol ishtirokchi. Hozirda hamjamiyat 43 910 obunachidan iborat bo'lib, Texnologiyalar & Aralashmalar toifasida 3 078-o'rinni va AQSH mintaqasida 727-o'rinni egallagan.

๐Ÿ“Š Auditoriya koโ€˜rsatkichlari va dinamika

ะฝะตะฒั–ะดะพะผะพ sanasidan buyon loyiha tez oโ€˜sib, 43 910 obunachiga ega boโ€˜ldi.

17 Iyun, 2026 dagi oxirgi maโ€™lumotlarga koโ€˜ra kanal barqaror faollikka ega. Oxirgi 30 kunda obunachilar soni 194 ga, soโ€˜nggi 24 soatda esa 4 ga oโ€˜zgardi va umumiy qamrov yuqori darajada qolmoqda.

  • Tasdiqlash holati: Tasdiqlanmagan
  • Jalb etish (ER): Auditoriya oโ€˜rtacha 13.17% darajada jalb etiladi. Nashrdan keyingi dastlabki 24 soatda kontent odatda umumiy obunachilar sonining 5.02% ini tashkil etuvchi reaksiyalarni toโ€˜playdi.
  • Post qamrovi: Har bir post oโ€˜rtacha 5 782 marta koโ€˜riladi; birinchi sutkada odatda 2 204 ta koโ€˜rish yigโ€˜iladi.
  • Reaksiyalar va oโ€˜zaro taโ€™sir: Auditoriya faol: har bir postga oโ€˜rtacha 12 ta reaksiya keladi.
  • Tematik yoโ€˜nalishlar: Kontent cve-2025, exploit, rat, trojan, bypass kabi asosiy mavzularga jamlangan.

๐Ÿ“ Tavsif va kontent siyosati

Muallif resursni shaxsiy fikrni ifoda etish maydoni sifatida taโ€™riflaydi:
โ€œMobile cybersecurity channel Links: https://linktr.ee/mobilehacker Contact: mobilehackerofficial@gmail.comโ€

Yuqori yangilanish chastotasi (oxirgi maโ€™lumot 18 Iyun, 2026 da olingan) sababli kanal doimo dolzarb va katta qamrovli boโ€˜lib qoladi. Analitika auditoriya kontent bilan faol hamkorlik qilishini, uni Texnologiyalar & Aralashmalar toifasidagi muhim taโ€™sir nuqtasiga aylantirishini koโ€˜rsatadi.

43 910
Obunachilar
+424 soatlar
+897 kunlar
+19430 kunlar
Postlar arxiv
New Android malware - NGate - relays NFC data from victimsโ€™ payment cards, via victimsโ€™ compromised mobile phones, to attacker's device waiting at an ATM to withdraw cash https://www.welivesecurity.com/en/eset-research/ngate-android-malware-relays-nfc-traffic-to-steal-cash/

Sophisticated phishing method targeted mobile users via Progressive Web Apps (iOS, Android) and WebAPKs (Android) to mimic banking apps. Installing WebAPK apps doesn't warn the victim about installing a third-party application and they even appear to have been installed from the Google Play store https://www.welivesecurity.com/en/eset-research/be-careful-what-you-pwish-for-phishing-in-pwa-applications/

The ColorOS Internet Browser (com.heytap.browser) app for Android allows a remote attacker to execute arbitrary JavaScript code PoC: https://github.com/actuator/com.heytap.browser

RCE on Xiaomi 13 Pro (CVE-2023-26324) ๐Ÿ‘‰Exploitation: 1) Open URL in WebView 2) Inject JavaScript 3) Execute JavaScript Interface functions from vulnerable GetApps to install & launch payload 4) Get shell ๐Ÿ‘‰Slides with PoC: https://media.defcon.org/DEF%20CON%2032/DEF%20CON%2032%20presentations/DEF%20CON%2032%20-%20Ken%20Gannon%20Ilyes%20Beghdadi%20-%20Xiaomi%20The%20Money%20Our%20Toronto%20Pwn2Own%20Exploit%20and%20Behind%20The%20Scenes%20Story.pdf

Exploiting Androidโ€™s Hardened Memory Allocator PoC: https://github.com/HexHive/scudo-exploitation Paper: https://nebelwelt.net/publications/files/24WOOT.pdf

Android Game Hacking: Increase money in Dude Theft Wars Shooting https://8ksec.io/hacking-android-games/

Dynamic Analysis Technique of Android Malware by Injecting Smali Gadgets Patch APK with logcat output as alternative to using Frida https://blogs.jpcert.or.jp/en/2024/08/smaligadget.html

The Way to Android Root: Exploiting Your GPU On Smartphone (CVE-2024-23380) [slides] https://i.blackhat.com/BH-US-24/Presentations/REVISED_US24-Gong-The-Way-to-Android-Root-Wednesday.pdf

5GBaseChecker: a security analysis framework that helps to hunt for 5G vulnerabilities https://github.com/SyNSec-den/5GBaseChecker

Google fixed Kernel RCE vulnerability in Android (CVE-2024-36971) that was most-likely used for targeted exploitation https://source.android.com/docs/security/bulletin/2024-08-01

LianSpy: new Android spyware targeting Russian users https://securelist.com/lianspy-android-spyware/113253/

BlankBot - a new Android banking trojan with screen recording, keylogging and remote control capabilities https://intel471.com/blog/blankbot-a-new-android-banking-trojan-with-screen-recording-keylogging-and-remote-control-capabilities

New Fileless Malware Framework "GhostHook" Targets Android Devices https://iverify.io/post/new-fileless-malware-framework-ghosthook-targets-android-devices

Introducing the new Mobile App Security Weakness Enumeration (MASWE). This brand new OWASP MAS resource bridges the gap between MASVS high-level controls and MASTG low-level testing, using a similar approach to CWEs. https://mas.owasp.org/news/2024/07/30/new-maswe/

Open Redirect in Login Redirect in MobSF (CVE-2024-41955) Update to MobSF v4.0.5. https://github.com/MobSF/Mobile-Security-Framework-MobSF/security/advisories/GHSA-8m9j-2f32-2vx4