logo

Oblivion RAT Masquerades as Play Store Update to Spy on Android Users

ID: b132397b-b036-53dc-90d9-306c8d145c06

STIX ID: report--b132397b-b036-53dc-90d9-306c8d145c06

Feed Name: GBHackers

Threat Score
75/100

Date Published: 2026-03-23

Date Updated: 2026-04-22

Author: Mayura Kathir

...
...

Oblivion RAT is a professionally developed Android remote access trojan sold as MaaS that uses a two-stage sideloading dropper and an APK builder to deploy implants which abuse Android Accessibility to gain full control (VNC, keylogging, SMS/OTP interception, device administration). Researchers obtained samples and infrastructure access, revealing clear indicators (C2 IPs, panel domain, payload and dropper hashes) and simple anti-analysis measures, highlighting a high-risk mobile threat that enables low-skilled actors to perform large-scale account and device compromise.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.