logo

VexTrio TDS System Developing Several Malicious Apps Mimic as VPNs to Publish in Google Play and App Store

ID: 68bc3a17-1ff6-5f42-a33b-f041b12c32d1

STIX ID: report--68bc3a17-1ff6-5f42-a33b-f041b12c32d1

Feed Name: cybersecurityNews.com

Threat Score
75/100

Date Published: 2025-08-08

Date Updated: 2026-04-21

Author: Tushar Subhra Dutta

...
...

VexTrio, a long-standing cybercriminal traffic distribution system, has expanded from web-based scams into distributing malicious mobile apps via app stores that masquerade as VPNs and system utilities; these apps perform user profiling, communicate with C2 using encrypted channels, employ obfuscation and anti-analysis checks, and deliver notification-hijacked fraudulent ads and scams integrated with VexTrio's TDS.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.