logo

Zimperium Detects New Android Spyware Targeting South Korea

ID: 7887f525-d2d1-5c7c-aecf-8532925ae277

STIX ID: report--7887f525-d2d1-5c7c-aecf-8532925ae277

Feed Name: Zimperium Blog

Threat Score
68/100

Date Published: 2024-09-26

Date Updated: 2026-05-01

...
...

Security researchers reported an Android spyware campaign targeting individuals in South Korea; the malware, disguised as legitimate apps, collects and exfiltrates contacts, images, videos and SMS while using minimal code and permissions to avoid detection. Zimperium states its on-device ML classifiers (deployed eight months earlier) detected the samples in a zero-day fashion and that the campaign has been active since June 2024, underscoring the value of on-device behavioral detection.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.