Unlike traditional Android Remote Access Trojan (RAT), Android Octagon employs a multi-stage design that dynamically loads encrypted DEX and JAR payloads while abusing VPN and Accessibility services to maintain persistence and steal sensitive information.
During our investigation, the campaign primarily targeted users in Bahrain by impersonating the official BH Alert emergency application.
Unlike traditional Android Remote Access Trojan (RAT), Android Octagon employs a multi-stage design that dynamically loads encrypted DEX and JAR […]
labs.k7computing.com