Oblivion RAT Masquerades as Play Store Update to Spy on Android Users
ID: b132397b-b036-53dc-90d9-306c8d145c06
STIX ID: report--b132397b-b036-53dc-90d9-306c8d145c06
Feed Name: GBHackers
Oblivion RAT is a professionally developed Android remote access trojan sold as MaaS that uses a two-stage sideloading dropper and an APK builder to deploy implants which abuse Android Accessibility to gain full control (VNC, keylogging, SMS/OTP interception, device administration). Researchers obtained samples and infrastructure access, revealing clear indicators (C2 IPs, panel domain, payload and dropper hashes) and simple anti-analysis measures, highlighting a high-risk mobile threat that enables low-skilled actors to perform large-scale account and device compromise.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
