logo

DroidLock malware locks you out of your Android device and demands ransom

ID: ee26adc1-e9ff-5802-9717-91dee05754b0

STIX ID: report--ee26adc1-e9ff-5802-9717-91dee05754b0

Feed Name: Malwarebytes Blog

Threat Score
75/100

Date Published: 2025-12-11

Date Updated: 2026-04-28

...
...

**DroidLock** is an Android-focused malicious campaign delivered via phishing that pretends to be legitimate apps and abuses Device Admin and Accessibility Services to gain persistent control, uses overlays and VNC for remote manipulation and credential/OTP capture, and locks or wipes devices to extort victims; the report describes delivery, capabilities, and mitigation advice for Spanish-speaking users and warns of potential spread.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.