New 'DroidLock' malware demands a ransom, locks user out of device
ID: fb4ce31d-5e4c-549e-b82a-8ed25a887853
STIX ID: report--fb4ce31d-5e4c-549e-b82a-8ed25a887853
Feed Name: The Record from Recorded Future News
Researchers have identified an Android malware strain named DroidLock, distributed through phishing websites and dropper apps targeting Spanish-speaking users. DroidLock can lock devices behind a ransom-style message (without encrypting files), change PIN/password/biometric settings, abuse device administrator privileges to erase data, silence notifications, take front-camera photos, display fake update screens, and record/transmit screen activity; the report provides no infection counts or attribution.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
