Tuesday, 02 January 2024 12:17 GMT

Mantaxotax Fuses Android Ransomware With Surveillance Tools Arabian Post


(MENAFN- The Arabian Post) clearfix">A newly documented Android malware strain called MantaxOtax combines ransomware, spyware and remote-control functions, enabling attackers to encrypt files, steal sensitive communications and obstruct victims from using infected phones.

Mobile security researchers at Zimperium's zLabs detailed the malware on September 9, saying analysed samples were linked through language indicators and recovered victim material to threat actors operating in Indonesia. Some samples were distributed as standalone Android application packages on third-party file-sharing services, suggesting victims were persuaded to sideload the malware outside official app stores. No distribution through Google Play was identified.

Once installed, MantaxOtax seeks device administrator privileges before requesting access to SMS messages, contacts, audio, images and Android's Accessibility services. Those permissions give the malware wide access to data and user interactions, supporting both surveillance and device-control functions. After registering with its command-and-control infrastructure, the malware can transmit the victim's location, mobile network operator and Android version, providing operators with basic telemetry about each compromised handset.

MENAFN11092026000152002308ID1111653113



The Arabian Post

Legal Disclaimer:
MENAFN provides the information “as is” without warranty of any kind. We do not accept any responsibility or liability for the accuracy, content, images, videos, licenses, completeness, legality, or reliability of the information contained in this article. If you have any complaints or copyright issues related to this article, kindly contact the provider above.



More Story