Experts from PhoenixArena are warning about Albiriox, a new malware targeting Android devices. This Trojan allows hackers to take complete control of users' smartphones. This is a major threat as it goes far beyond traditional banking Trojans.
Albiriox is designed to act as if the attacker is directly manipulating the device. The software first appeared as a beta in September 2025 and was released publicly just one month later. This feature makes it easy for hackers to manipulate the device without the victim detecting it.
According to analyses from Cleafy, language and discussions on hacker forums suggest that a Russian-speaking cybercrime group is behind Albiriox. This software targets over 400 financial applications and cryptocurrency wallets globally. Its widespread use significantly increases the risk to users.
![]() |
| Experts from Phoenix Arena are warning about Albiriox, a new malware. |
Notably, Albiriox is offered as a service (MaaS) with a fee starting at $650 per month. Anyone who subscribes can install, distribute, and run the software without needing to develop it themselves. This makes its spread rapid and difficult to control.
Albiriox's common attack tactic is distributing fake applications. Additionally, social engineering techniques are employed, such as sending fake SMS messages or links impersonating reputable brands. These tactics make victims more susceptible to being tricked and installing malware.
One of Albiriox's first victims was the app of a well-known discount supermarket chain in Germany. Experts warn users to carefully check the source of downloaded apps. This caution helps reduce the risk of malware infection.
![]() |
| Albiriox is designed to function as if the attacker is directly manipulating the device. |
Android users are advised to update their software and avoid downloading apps from unreliable sources. Additionally, using extra security measures such as two-factor authentication and antivirus software will minimize the risk. Albiriox serves as a wake-up call about protecting devices in the digital age.
Android users need to remain vigilant against new malware, especially Albiriox. While Google Play Protect offers a layer of protection, it cannot guarantee absolute safety. Albiriox constantly appears as fake applications, meaning the risk of being compromised is always present.
This software incorporates many sophisticated tools, allowing hackers to completely control the device. Hackers can open banking applications, make transfers, or approve transactions without the user's knowledge. This is why identification and prevention are extremely important.
![]() |
| Albiriox's common attack tactic is to distribute fake applications. |
To protect their devices, users should perform a deep scan using a trusted security app when they detect an app with an unfamiliar name or from an unknown source. This helps detect potential threats early, before they cause harm.
The most effective way to prevent malware infection is to limit the installation of apps from unofficial app stores. Users should carefully check links received via text messages or emails, and avoid clicking on unverified links. This habit significantly reduces the risk of their devices being infected with malware.
When using financial apps, it's essential to verify the developer's name, read user reviews, and check the number of downloads. Additionally, keeping your Android system and banking apps updated always ensures your device is in the best possible security state. Each update fixes vulnerabilities that could be exploited.
Additionally, users should enable multi-factor authentication for their bank accounts and e-wallets. This provides an extra layer of protection, reducing the risk of losing money or having data stolen. Implementing these practices will help keep your Android device safe from Albiriox and other malware.
Source: https://baoquocte.vn/moi-nguy-hiem-tu-phan-mem-doc-hai-de-doa-nguoi-dung-android-336865.html









Comment (0)