Pre-Baked Firmware Malware Hits Budget Android Devices in 150+ Countries
Summary
A malware campaign named Midnight Mimosa has been found preinstalled on budget Android devices, affecting users in over 150 countries. The malware is embedded directly into the firmware of these low-cost devices.
IFF Assessment
FOE
The discovery of pre-installed firmware malware on numerous devices represents a significant threat to users, as it compromises security from the point of purchase.
Defender Context
This campaign highlights a concerning trend of supply chain compromises, where malware is introduced before devices reach consumers. Defenders should be aware of the potential for pre-installed malware on low-cost devices and educate users about verifying device integrity and keeping firmware updated.