Midnight Mimosa malware is preinstalled on cheap Android phones
Midnight Mimosa malware is preinstalled on some low-cost Android phones, giving attackers system-level access to install apps and commit ad fraud.
Researchers have discovered a concerning malware campaign targeting some budget Android phones, including models from Doogee and Cubot. Dubbed Midnight Mimosa, this malicious software is embedded within the phone's firmware and can install applications, request permissions, bypass Play Protect, and transform devices into part of a botnet.
The campaign has been observed on thousands of devices in over 150 countries. Removing the malware proves challenging due to its location in the system partition. Over the years, warnings have been issued about the risks of downloading unknown apps onto smartphones, emphasizing the importance of relying on the Google Play Store and being cautious when sideloading APKs from untrusted sources.
However, what if your phone was already infected before you even unboxed it? Bitdefender researchers have uncovered this new malware campaign, Midnight Mimosa, which poses a significant threat to unsuspecting users.
Written by urgent.news from Android Authority's reporting — not their text. Machine-written — may contain errors; check the original before relying on it.
This story
This is one outlet's version. Read the fullest account.
- Some cheap Android phones are shipping with malware baked in androidauthority.com
- Old Android phones make better smart home wall panels than any $200 displays xda-developers.com
- Thousands of cheap Android phones shipped with ad-fraud malware therecord.media