The StrandHogg vulnerability
![]() Promon security researchers have found proof of a dangerous Android vulnerability, dubbed ‘StrandHogg’, that allows real-life malware to pose as legitimate apps, with users unaware they are being targeted. Lookout, a partner of Promon, confirmed that they have identified 36 malicious apps exploiting the vulnerability. Among them were variants of the BankBot banking trojan observed as early as 2017. *During testing, Promon researchers found that all of the 500 most popular apps (as ranked by app intelligence company 42 Matters) are vulnerable to StrandHogg. *All versions of Android affected, incl. Android 10 (note: the permission harvesting exploit is only from Android 6.0 and onwards). |

1,600-year-old skeleton found in a giant jar in Bulgaria may belong to Roman who hid there to escape enemy attack (photo)
53706.09.2026, 23:25
South Korea’s ‘AI for All’ Push Gives Free Access to Every Citizen
71131.08.2026, 00:42
Archaeologists just found a 2,500-year-old well in Italy (photo)
67630.08.2026, 16:36
Neptune’s tiny moons may be the wreckage of shattered ancient worlds
92916.08.2026, 19:42
See the Sun like never before with most detailed images yet (video)
100705.08.2026, 21:22
AWS invests $1 billion to embed AI forward deployed engineers with customers
74102.08.2026, 21:52
