Android reverse engineering entirely on-device. Radare2 binary analysis, 8 Java decompilers, Flutter & Unity il2cpp support
https://github.com/UltraSina/androidReverse
https://github.com/UltraSina/androidReverse
GitHub
GitHub - UltraSina/androidReverse: Android reverse engineering entirely on-device. Radare2 binary analysis, 8 Java decompilersβ¦
Android reverse engineering entirely on-device. Radare2 binary analysis, 8 Java decompilers, Flutter & Unity il2cpp support. - UltraSina/androidReverse
β‘17π16π14π₯14π€£14π©6
Android Malware Disguised as Document Reader Reaches 100K Downloads on Google Play | Anatsa banker
https://x.com/Threatlabz/status/2069190345418854810
https://x.com/Threatlabz/status/2069190345418854810
X (formerly Twitter)
Zscaler ThreatLabz (@Threatlabz) on X
β οΈ ThreatLabz discovered another fake document reader in the Google Play Store with more than 100K downloads, which delivers the Anatsa Android trojan.
Anatsa installer MD5 hash: f72b1a333fa28b133df6476561142d6a
Payload URL: http://66.206.6[.]6:8080/disclaimer.txtβ¦
Anatsa installer MD5 hash: f72b1a333fa28b133df6476561142d6a
Payload URL: http://66.206.6[.]6:8080/disclaimer.txtβ¦
β€53
This media is not supported in your browser
VIEW IN TELEGRAM
Android 17 root: full chain browser-to-kernel exploit with two 0-day vulnerabilities affecting Firefox before v151.0.2 (CVE-2026-10702)
Click on the link -> root Android
https://x.com/nebusecurity/status/2069707520160227688
Click on the link -> root Android
https://x.com/nebusecurity/status/2069707520160227688
π₯58π±29β€14π€12π9π7π7
Glitch SPY: New Android RAT Distributed Through a Fake Polish Rental App
https://cyble.com/blog/glitch-spy-rat-distributed-via-fake-polish-app/
https://cyble.com/blog/glitch-spy-rat-distributed-via-fake-polish-app/
Cyble
Glitch SPY RAT Distributed Via Fake Polish Rental App
CRIL analyzes Glitch SPY, an Android RAT with 70+ commands, crypto-clipping, and a silent remote browser, giving attackers full device control.
RedWing: A Mobile Malware-as-a-Service Operation
https://zimperium.com/blog/redwing-a-mobile-malware-as-a-service-operation
https://zimperium.com/blog/redwing-a-mobile-malware-as-a-service-operation
Zimperium
RedWing: A Mobile Malware-as-a-Service Operation
true
π29β‘21β€19π18
GoldPickaxe Returns: When Your Biometric Information is as Important as Your Money
https://zimperium.com/blog/goldpickaxe-returns-when-your-biometric-information-is-as-important-as-your-money
https://zimperium.com/blog/goldpickaxe-returns-when-your-biometric-information-is-as-important-as-your-money
Zimperium
GoldPickaxe Returns: When Your Biometric Information is as Important as Your Money
true
π22β€19π19π8
How to Bypass mTLS on Android with Frida
https://kiratliygt.medium.com/how-to-bypass-mtls-on-android-with-frida-45c5e71373e8
https://kiratliygt.medium.com/how-to-bypass-mtls-on-android-with-frida-45c5e71373e8
Medium
How to Bypass mTLS on Android with Frida
Keywords: mTLS bypass Android, Frida mTLS, Android mutual TLS bypass, Burp Suite mTLS Android, Android mTLS pentest, PKCS12 Androidβ¦
π44β€29
RedHook Android malware abuses ADB Wireless Debugging and Shizuku to get shell-level privileges
https://www.group-ib.com/blog/redhook-android-rat-upgraded/
https://www.group-ib.com/blog/redhook-android-rat-upgraded/
Group-IB
RedHook Returns with a Dangerous Upgrade
Group-IB analysts examine this resurfaced Android Remote Access Trojan, demonstrating new, sophisticated and malicious functionalities including autonomous privilege abuse, expanded command-and-control capabilities, and a robust persistence stack.
π21π16π€‘13β€10π9π₯8π3
Forwarded from The Bug Bounty Hunter
Reading Contact Photos Without READ_CONTACTS: A Google Messages Confused Deputy Bug
https://blog.devploit.dev/posts/google-messages-avatarcontentprovider-contacts-bypass/
https://blog.devploit.dev/posts/google-messages-avatarcontentprovider-contacts-bypass/
devploit / blog
Reading Contact Photos Without READ_CONTACTS: A Google Messages Confused Deputy Bug
What happens if an app without READ_CONTACTS asks Google Messages for Android to load a Contacts photo for it?
β€48π18
List of 140 vulnerabilities in Samsung preinstalled Android apps reported in 2022
https://github.com/oversecured/Samsung_Vulnerabilities
https://github.com/oversecured/Samsung_Vulnerabilities
GitHub
GitHub - oversecured/Samsung_Vulnerabilities: 176 vulnerabilities in Samsung preinstalled Android apps
176 vulnerabilities in Samsung preinstalled Android apps - oversecured/Samsung_Vulnerabilities
β€37π₯23β‘17
Fake Bahrain Civil-Defense App Turns a Phone Into a Listening Post
https://dreamgroup.com/blog/how-a-fake-bahrain-civil-defense-app-turns-a-phone-into-a-listening-post
https://dreamgroup.com/blog/how-a-fake-bahrain-civil-defense-app-turns-a-phone-into-a-listening-post
Dreamgroup
How a Fake Bahrain Civil-Defense App Turns a Phone Into a Listening Post | | Dream Security Blog
π―15β€10π10π6
Flying Eagle Android RAT: Leaked Source Code, 170 Active Servers, and a New Platform Called Night Dragon
https://hunt.io/blog/flying-eagle-android-rat-170-servers-night-dragon
https://hunt.io/blog/flying-eagle-android-rat-170-servers-night-dragon
hunt.io
Flying Eagle Android RAT: Leaked Source Code, 170 Active Servers, and a New Platform Called Night Dragon
Hunt.io and NetAskari trace a leaked Android RAT framework across 170 active servers, analyze the APK builder internals, and document a successor platform called Night Dragon targeting Chinese users.
π20β€12π7
Inside an N26 Impersonation Campaign: From Vishing and Fake Control 1.0 to the Copybara Android RAT
https://www.d3lab.net/inside-an-n26-impersonation-campaign-from-vishing-and-fake-control-1-0-to-the-copybara-android-rat/
https://www.d3lab.net/inside-an-n26-impersonation-campaign-from-vishing-and-fake-control-1-0-to-the-copybara-android-rat/
D3Lab
Inside an N26 Impersonation Campaign: From Vishing and Fake Control 1.0 to the Copybara Android RAT
From a fake N26 support call to the Copybara Android RAT: inside a human-operated phishing campaign designed for on-device financial fraud.
β€18π6π₯±6π₯°3
Root My Pixel: is an Android application designed to automate root access on Google Pixel 10 devices leveraging the NebuSec IonStack exploit (CVE-2026-43499) and integrating ReSukiSU / KernelSU
https://github.com/alex193a/Root-My-Pixel
https://github.com/alex193a/Root-My-Pixel
GitHub
GitHub - alex193a/Root-My-Pixel: Jailbreak supported Google Pixel phones with CVE-2026-43499
Jailbreak supported Google Pixel phones with CVE-2026-43499 - alex193a/Root-My-Pixel
π₯24π14π±8β€5π5π2
Octagon: Technical Analysis of a Fake Bahrain Civil Defense Application
https://labs.k7computing.com/index.php/octagon-technical-analysis-of-a-fake-bahrain-civil-defense-application/
https://labs.k7computing.com/index.php/octagon-technical-analysis-of-a-fake-bahrain-civil-defense-application/
K7 Labs
Octagon: Technical Analysis of a Fake Bahrain Civil Defense Application
Unlike traditional Android Remote Access Trojan (RAT), Android Octagon employs a multi-stage design that dynamically loads encrypted DEX and JAR [β¦]
β€21β‘15π8
H96 Android TV Boxes Used for Ad Fraud and Residential Proxies
https://www.bitsight.com/blog/fuyao-enterprise-building-ad-fraud-empire-ai-and-kids-coding-blocks
https://www.bitsight.com/blog/fuyao-enterprise-building-ad-fraud-empire-ai-and-kids-coding-blocks
Bitsight
Uncovering the Fuyao Enterprise: A Shift in Modern Ad-Fraud
Bitsight's TRACE team exposes the "Fuyao Enterprise," a hidden Android TV botnet using 120,000+ AI digital humans to power large-scale ad fraud. Learn more.
β€20
Zero-Click File Drop on Xiaomi ShareMe (MiDrop)
https://blog.byterialab.com/zero-click-file-drop-on-xiaomi-shareme-midrop/
https://blog.byterialab.com/zero-click-file-drop-on-xiaomi-shareme-midrop/
Byteria - Mobile Application Security Blog
Zero-Click File Drop on Xiaomi ShareMe (MiDrop) - Byteria - Mobile Application Security Blog
An attacker within Bluetooth LE range (about 50 m) can write arbitrary files to a victimβs phone the moment they open Receive mode. No QR scan
π₯21β€11β‘9π2
Introducing MobHunt: agentic mobile bug bounty hunting
Blog: https://ivrodriguez.com/introducing-mobhunt/
Tool: https://github.com/ivRodriguezCA/MobHunt
Blog: https://ivrodriguez.com/introducing-mobhunt/
Tool: https://github.com/ivRodriguezCA/MobHunt
Ivrodriguez
Introducing MobHunt: agentic mobile bug bounty hunting
tl;dr I built an agentic mobile security research system that runs the whole mobile bug bounty pipeline, from scoping a program to writing the report. Here is what happened when I pointed it at real programs.
β€9π4π4π3
Dropping Elephant (Patchwork): Espionage APT Tactics and Tools
https://www.picussecurity.com/resource/blog/dropping-elephant-patchwork-espionage-apt-tactics-and-tools
https://www.picussecurity.com/resource/blog/dropping-elephant-patchwork-espionage-apt-tactics-and-tools
Picussecurity
Dropping Elephant (Patchwork): Espionage APT Tactics and Tools
Dropping Elephant, also called Patchwork, is an espionage APT active since 2015. Review its MITRE ATT&CK techniques and validate your controls.
β€7π3β‘1
Developers: Beware of Ad Libraries that Betray Your Usersβ Location Privacy
https://www.eff.org/deeplinks/2026/07/developers-beware-ad-libraries-betray-your-users-location-privacy
https://www.eff.org/deeplinks/2026/07/developers-beware-ad-libraries-betray-your-users-location-privacy
Electronic Frontier Foundation
Developers: Beware of Ad Libraries that Betray Your Usersβ Location Privacy
An EFF investigation identified several advertising software development kits (SDKs) that publicly acknowledge collecting and sharing usersβ location by default when embedded in apps granted location
π12β€5