Corp MDM Spyware Targets Logistics Firms, Steals New SMS and Redirects Calls

Summary

A new Android spyware campaign, dubbed Corp MDM, is targeting logistics companies. The malware is distributed via fake Google Play pages impersonating logistics firms and masquerades as a system service, with the package name "com.corp.mdm".

IFF Assessment

FOE

This campaign represents a new threat to the logistics sector, involving data theft and potential system compromise, which is detrimental to defenders.

Defender Context

The logistics sector is a critical infrastructure, and this spyware campaign highlights the need for enhanced security measures against targeted mobile malware. Defenders should focus on user education regarding app sources and mobile endpoint security for devices used in these industries.

Read Full Story →