A new Android spyware app has been discovered that utilises a password prompt for uninstallation, effectively blocking users from removing the app without the correct password set by the installer. It also makes use of Android’s built-in overlay permission to hijack the uninstall screen, disguising itself under generic names such as “System Settings”. This spyware is categorised as “stalkerware” and is often used illegally to spy on individuals without their consent.

Multi-Stage Malware Attack Uses .JSE and PowerShell to Deploy Agent Tesla and XLoader
A new multi-stage cyber attack has been identified by Palo Alto Networks Unit 42, utilising malware families like Agent Tesla variants, Remcos RAT, and XLoader.