Critical Android Zero-Click Vulnerability CVE-2026-0073 Allows Remote Shell Access Without User Interaction
Google has disclosed a critical zero-click remote code execution vulnerability tracked as CVE-2026-0073 in the Android System component. The flaw allows attackers on the same local network to...
KidsProtect: New Rebrandable Android Stalkerware Platform Lets Anyone Resell Covert Surveillance Malware
A new Android spyware tool called KidsProtect is being sold on hacking forums with a white-label reseller model that lets buyers rebrand and resell it under their own...
ClayRat: A New Breed of Android Spyware with Unprecedented Control
A closer look at the sophisticated threat and its tactics. The mobile device landscape is under a constant barrage of new threats, with cybercriminals becoming increasingly adept at...
Android’s December Patch: Zero-Day Vulnerabilities and Their Impact
The latest security bulletin from Google has brought forth a grim reality for Android users: multiple zero-day vulnerabilities are actively exploited by threat actors, demanding immediate attention. This...
SuperCard X: exposing a MaaS for NFC Relay fraud operation
The Cleafy Threat Intelligence team has uncovered SuperCard X, a sophisticated Android malware campaign leveraging NFC-relay attacks to authorize fraudulent POS and ATM transactions. This Malware-as-a-Service (MaaS) operation1...
Crocodilus: a sophisticated new Android banking trojan emerges
A new Android banking trojan, dubbed Crocodilus, has been discovered targeting users primarily in Spain and Turkey. This malware isn’t just another clone; it’s a fully-fledged threat employing...
New Android spyware “KoSpy” linked to North Korean APT37
A new Android spyware, dubbed “KoSpy,” has been discovered by researchers at Lookout, adding another concerning tool to the arsenal of North Korean threat actors. This spyware, attributed...
Fake wedding invitations to spread Android Malware in Southeast Asia
Since mid-2024, a new malware campaign targeting Android users has emerged, identified as the Tria stealer. This malware exploits wedding invitation themes to lure victims into installing malicious...