Corp MDM Spyware Targets Logistics Firms, Steals New SMS and Redirects Calls
Summary
A new Android spyware campaign, dubbed Corp MDM, is targeting logistics companies. The malware is distributed via fake Google Play pages impersonating logistics firms and masquerades as a system service, with the package name "com.corp.mdm".
IFF Assessment
FOE
This campaign represents a new threat to the logistics sector, involving data theft and potential system compromise, which is detrimental to defenders.
Defender Context
The logistics sector is a critical infrastructure, and this spyware campaign highlights the need for enhanced security measures against targeted mobile malware. Defenders should focus on user education regarding app sources and mobile endpoint security for devices used in these industries.