Vishing, Mishing Go Next-Level With FakeCall Android Malware
ID: 91e3d28f-c296-523b-b273-ed095390bd95
STIX ID: report--91e3d28f-c296-523b-b273-ed095390bd95
Feed Name: Dark Reading
Date Published: 2024-10-30
Date Updated: 2026-04-21
Author: Elizabeth Montalbano, Contributing Writer
A newly observed variant of FakeCall — an Android malware used in vishing/mishing fraud — expands its capabilities beyond call interception to abuse Accessibility Services for UI control and data capture, monitor Bluetooth and screen state, and maintain persistent spyware behavior; infections occur via malicious APKs that set the app as the default call handler, enabling call hijacking, AitM attacks, audio/video exfiltration, and identity fraud. Researchers warn this evolution increases stealth and enterprise risk, and recommend limiting app sources, scrutinizing app permissions, and training staff to recognize mobile phishing.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
