Android Malware Wpeeper Uses Compromised WordPress Sites to Hide C2 Servers
Researchers studying cybersecurity have uncovered a yet unreported malware that targets Android smartphones and evades detection by using hacked WordPress websites as relays for its real command-and-control (C2) servers.
Code-named Wpeeper, the malware is an ELF binary that uses HTTPS to encrypt its C2 communications.
According to experts from the QiAnXin XLab team, Wpeeper is a standard backdoor Trojan for Android systems that supports tasks including gathering sensitive device data, managing files and directories, uploading and downloading, and carrying out commands.
The APK file serves as a covert backdoor delivery mechanism for the ELF code, which is embedded in a repackaged application that seems to be the UPtodown App Store app read more Android Malware Wpeeper Uses Comprom...

