logo

GuardZoo Android Malware Targets Military via WhatsApp

ID: 7c534516-3df7-5be7-ab8c-6addb121a5e2

STIX ID: report--7c534516-3df7-5be7-ab8c-6addb121a5e2

Feed Name: Cyber Press

Threat Score
85/100

Date Published: 2024-07-11

Date Updated: 2026-04-19

Author: Kaaviya

...
...

### Executive Summary GuardZoo is an Android RAT active since October 2019 that uses military-themed social engineering via WhatsApp and browser downloads to target Middle Eastern military personnel, exfiltrating photos, GPS/location files, documents and device metadata; it supports dynamic DEX loading, persistence mechanisms, and a custom ASP.NET C2 server, and researchers link it to Houthi actors with over 450 identified victims across Yemen, Saudi Arabia and nearby countries.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.