Under a malware-as-a-service (MaaS) approach, a new Android malware called Albiriox has been marketed as providing a “full spectrum” of functionality to enable screen manipulation, on-device fraud (ODF), and real-time interaction with infected devices.
A hard-coded list of more than 400 programs from the banking, financial technology, payment processors, cryptocurrency exchanges, digital wallets, and trading platforms sectors is embedded by the malware.
The virus exploits dropper apps disseminated by social engineering lures, paired with packing techniques, to elude static detection and deliver its payload, Cleafy researchers Federico Valentini, Alessandro Strino, Gianluca Scotti, and Simone Mattia claimed.
According to reports, Albiriox was originally promoted in late September 2025 as part of a limited recruitment phase before switching to a MaaS offering a month later. Based on their participation on cybercrime forums read more about New Albiriox MaaS Malware Targets 400+ Apps for On-Device Fraud and Screen Control.
Get up to date on the latest cybersecurity news and enhance your knowledge of cybersecurity with our thorough coverage of the dangers, breaches, and solutions.
