Cyber

Low-cost Android phones found shipping with built-in proxy malware

A malicious campaign dubbed Midnight Mimosa embeds malware into the firmware of budget Android devices, turning them into proxies.

·1 min read
Low-cost Android phones found shipping with built-in proxy malware

According to BleepingComputer, a cyberthreat campaign named 'Midnight Mimosa' has been uncovered on low-cost Android smartphones. The malicious software is embedded directly into the devices' firmware during production, operating completely hidden from users.

This malware grants attackers the ability to silently install applications, engage in ad fraud, and convert unsuspecting users' devices into residential proxies. As a result, affected phones are exploited for unauthorized network traffic routing without the owner's knowledge.

Security experts warn that such supply-chain vulnerabilities pose severe privacy and security risks, particularly for consumers purchasing cheaper, lesser-known smartphone brands where security audits are rarely performed.

For tech consumers in Uzbekistan and the broader region, this discovery serves as an important reminder to purchase certified devices from authorized retailers, minimizing the risk of firmware-level compromises and unauthorized data usage.

#Android#Malware#Cybersecurity#BleepingComputer#Mobile#BleepingComputer

Related articles