logo

New Vo1d malware infects 1.3 million Android streaming boxes

ID: 4a3f84f1-3420-5f71-a0c1-c3a3021ba222

STIX ID: report--4a3f84f1-3420-5f71-a0c1-c3a3021ba222

Feed Name: Bleeping Computer

Threat Score
70/100

Date Published: 2024-09-12

Date Updated: 2026-04-20

Author: Lawrence Abrams

...
...

**Executive summary:** Researchers (Dr.Web) have identified the Vo1d backdoor infecting roughly 1.3 million off-brand Android AOSP-based streaming boxes across more than 200 countries; the modular malware (components named vo1d, wd, and others) achieves persistence by modifying startup scripts (install-recovery.sh, daemonsu, debuggerd), can download and run executables, install APKs, and is linked to a published set of IOCs and mitigation guidance.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.