Tech

This devious Android malware adds fake contacts to your phone to spoof trusted callers

Share
Share


  • Crocodilus Android trojan has been updated with new features
  • Among them is the ability to add a fake contact and trick people into accepting calls
  • The contacts don’t sync with Google, experts say

Security researchers have spotted a new Android malware variant called Crocodilus, and what makes it stand out is the ability to add new contacts to the target device’s contacts list.

Crocodilus was first spotted in late March 2025 by security researchers Threat Fabric, when it was described as a “highly capable mobile banking Trojan” using different techniques such as overlay attacks, keylogging, and abuse of Android’s Accessibility Services, to steal sensitive data, access people’s bank accounts, steal cryptocurrency, and more.

Share

Leave a comment

Leave a Reply

Your email address will not be published. Required fields are marked *

Related Articles