logo

New Manic Android malware can exfiltrate data through nearby devices

ID: 7db9eb16-1590-58ce-836a-5bfff251b646

STIX ID: report--7db9eb16-1590-58ce-836a-5bfff251b646

Feed Name: Bleeping Computer

Threat Score
78/100

Date Published: 2026-08-20

Date Updated: 2026-08-20

Author: Bill Toulas

...
...

A newly documented Android malware family named Manic has targeted users across multiple European countries (with a primary focus on Ukraine) since at least February, combining spyware, banking fraud, and remote control. Manic abuses Accessibility and notification permissions to capture PINs, SMS codes and app inputs using transparent overlays and UI keylogging, and implements a resilient exfiltration channel that can relay encrypted stolen data via nearby infected devices over Wi‑Fi Direct or Bluetooth (including multi‑hop relays) when direct C2 is unavailable.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.