The FBI has warned that millions of Android devices globally have been compromised by a preinstalled malware, BadBox 2.0, primarily from devices manufactured in China. Unlike regular malware, BadBox 2.0 is factory-installed and prompts users to disable Google Play Protect. Removing the malware isn’t easy and the FBI recommends replacing any suspicious devices. Users are advised to be cautious of obscure Android brands, avoid unverified apps, and keep their devices up-to-date to minimise risk.

Threat Actors Attacking Cryptocurrency and Blockchain Developers with Weaponized npm and PyPI Packages
The cryptocurrency and blockchain ecosystem faces a surge in sophisticated malware targeting open-source supply chains, with 75% of malicious packages found on npm. Attackers exploit