New Android malware encrypts files, steals data, and harasses victims
A sophisticated new Android threat known as MantaxOtax combines ransomware and spyware to encrypt files, steal data, and harass victims.
Velocity
How fast coverage is spreading — measured hourly from article rate × source diversity. How this works →
The brief
A new cyberattack targeting Android devices has emerged, utilizing a hybrid approach that blends the capabilities of ransomware and spyware. This specific threat, identified as MantaxOtax, is designed to encrypt files on the victim's device while simultaneously stealing sensitive data. According to reports, the malware is capable of spying on WhatsApp communications and intercepting one-time passwords, or OTPs, which are often used for secure authentication. Once the device is compromised, the attackers use these capabilities to harass the victims, creating a multifaceted cocktail of cybercrime. Coverage of this threat is widespread across technology and security publications. Infosecurity Magazine and Zimperium specifically name the malware as MantaxOtax, with Zimperium further identifying it as Indonesian mobile ransomware that features integrated spyware.
BleepingComputer highlights the combined nature of the attack, noting the simultaneous encryption of files and data theft. TechRadar describes the methodology as a cocktail of cybercrime, and India Today focuses on the specific risks to users, such as the theft of OTPs and the monitoring of WhatsApp activities. This development represents a significant escalation in mobile threats because it merges two distinct types of malicious software. Traditionally, ransomware focuses on locking access to data for a fee, while spyware focuses on the covert extraction of information. By combining these, MantaxOtax allows attackers to not only hold a user's files hostage but also to gain deep insights into their private messages and security credentials. This allows for a more aggressive form of victim harassment, as the attackers possess both the encrypted files and the private data of the user.
Going forward, the focus remains on the capabilities of this Indonesian-linked malware and the warnings issued by researchers. Users and security professionals are monitoring how the malware manages to bypass Android security to implement its encryption and spying features. Coverage indicates that the primary risks to watch for include the compromise of WhatsApp accounts and the theft of OTPs. Further details on the distribution methods of MantaxOtax or specific mitigation strategies have not yet been detailed in the current reports, but the combination of ransomware and spyware marks a critical trend in mobile cybercrime.
Synthesized by PULSE from the headlines below under a strict no-invention contract. ✓ fact-checked: all claims supported by sources Updated 1h ago.
Quick answers
What is the name of this new Android malware?
The malware is identified as MantaxOtax.
What specific apps or data does MantaxOtax target?
The malware can spy on WhatsApp and steal one-time passwords (OTPs).
Where does the ransomware originate according to reports?
Zimperium identifies MantaxOtax as Indonesian mobile ransomware.
Coverage (7)
- Devious Mantax Malware Uses Dirty Tricks To Extort Android Users HotHardware · 22h ago
- New Android Ransomware Records Screens, Steals OTPs and Secretly Takes Photos of Victims cybersecuritynews.com · 22h ago
- A new Android attack combines malware and ransomware in a cocktail of cybercrime TechRadar · 22h ago
- MantaxOtax Android Malware Combines Ransomware With Spyware Infosecurity Magazine · 22h ago
- Researchers warn about new Android malware that can steal OTPs, spy on WhatsApp and harass victims India Today · 22h ago
- Mantax Otax: Indonesian Mobile Ransomware with Spyware Integration Zimperium · 22h ago
- New Android malware encrypts files, steals data, and harasses victims BleepingComputer · 22h ago
Topics
Related trends
ID verification giant IDScan confirms data breach with more than 150 million driver's licenses stolen
ID verification firm IDScan has confirmed a massive data breach resulting in the theft of over 150 million driver's licenses.
Rebels used Anthropic’s AI bot to develop guided weapons, report says
Reports indicate that Anthropic's AI bot, Claude, has been utilized to automate exploitation and data theft targeting multiple victims.
Researchers used AI to build a WeChat worm that spreads through phone calls
Researchers have demonstrated a new AI-powered WeChat worm capable of spreading via phone calls, signaling a potential shift in cyberattack capabilities.
Google Photos could soon let you choose a consistent look for your home feed
Google Photos is testing new customization options for its Android home feed and enhanced markup tools to give users more control over their gallery layout.
Houthis used Anthropic AI to try to build ballistic missiles
Anthropic reports that adversaries of the United States attempted to utilize the Claude AI model to conduct weapons research.
Jensen Huang Addresses AI Fears After Human Extinction Warnings
Nvidia CEO Jensen Huang addresses artificial intelligence fears following warnings of human extinction while forecasting massive industry scale.