Cybersecurity researchers have detailed the operations of AntiDot, a malicious Android malware framework sold as MaaS, affecting thousands of devices through targeted campaigns. The malware’s sophisticated evasion techniques and extensive capabilities pose a significant threat to mobile security and user privacy. #AntiDot #LARVA-398
Keypoints
- AntiDot malware has compromised over 3,775 devices across 273 campaigns using its MaaS platform.
- It employs obfuscation and multi-stage delivery to bypass detection and gain extensive permissions through accessibility services.
- The malware can perform overlay attacks, intercept SMS, monitor notifications, and control devices remotely via WebSocket communication.
- Recent updates include a version called AppLite Banker used in mobile phishing campaigns targeting financial theft.
- New threats include virtualization-based malware like GodFather and NFC relay attacks by SuperCard X targeting banking apps and NFC transactions.
Read More: https://thehackernews.com/2025/06/new-android-malware-surge-hits-devices.html