logo

New Albiriox Malware Attacking Android Users to Take Complete Control of their Device

ID: 812a250e-4dcb-535a-90bc-4200d0024744

STIX ID: report--812a250e-4dcb-535a-90bc-4200d0024744

Feed Name: cybersecurityNews.com

Threat Score
75/100

Date Published: 2025-11-29

Date Updated: 2026-04-21

Author: Guru Baran

...
...

**Albiriox** is a newly observed Android banking RAT offered as Malware‑as‑a‑Service that enables real‑time on‑device fraud by streaming victims' screens via a VNC module, abusing Accessibility Services for overlays/keylogging, and bypassing 2FA; it is distributed through SMS/Phishing lures and a two‑stage dropper, targets 400+ financial and crypto apps, and includes IOCs such as a C2 IP (194.32.79.94:5555) and multiple malicious delivery domains.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.