PULSE the living trend engine
↑ Rising Technology

New Android malware encrypts files, steals data, and harasses victims

A sophisticated new Android threat known as MantaxOtax combines ransomware and spyware to encrypt files, steal data, and harass victims.

7sources
7articles
5velocity
+65%since first seen
1h agofirst detected

Velocity

How fast coverage is spreading — measured hourly from article rate × source diversity. How this works →

The brief

A new cyberattack targeting Android devices has emerged, utilizing a hybrid approach that blends the capabilities of ransomware and spyware. This specific threat, identified as MantaxOtax, is designed to encrypt files on the victim's device while simultaneously stealing sensitive data. According to reports, the malware is capable of spying on WhatsApp communications and intercepting one-time passwords, or OTPs, which are often used for secure authentication. Once the device is compromised, the attackers use these capabilities to harass the victims, creating a multifaceted cocktail of cybercrime. Coverage of this threat is widespread across technology and security publications. Infosecurity Magazine and Zimperium specifically name the malware as MantaxOtax, with Zimperium further identifying it as Indonesian mobile ransomware that features integrated spyware.

BleepingComputer highlights the combined nature of the attack, noting the simultaneous encryption of files and data theft. TechRadar describes the methodology as a cocktail of cybercrime, and India Today focuses on the specific risks to users, such as the theft of OTPs and the monitoring of WhatsApp activities. This development represents a significant escalation in mobile threats because it merges two distinct types of malicious software. Traditionally, ransomware focuses on locking access to data for a fee, while spyware focuses on the covert extraction of information. By combining these, MantaxOtax allows attackers to not only hold a user's files hostage but also to gain deep insights into their private messages and security credentials. This allows for a more aggressive form of victim harassment, as the attackers possess both the encrypted files and the private data of the user.

Going forward, the focus remains on the capabilities of this Indonesian-linked malware and the warnings issued by researchers. Users and security professionals are monitoring how the malware manages to bypass Android security to implement its encryption and spying features. Coverage indicates that the primary risks to watch for include the compromise of WhatsApp accounts and the theft of OTPs. Further details on the distribution methods of MantaxOtax or specific mitigation strategies have not yet been detailed in the current reports, but the combination of ransomware and spyware marks a critical trend in mobile cybercrime.

Synthesized by PULSE from the headlines below under a strict no-invention contract. ✓ fact-checked: all claims supported by sources Updated 1h ago.

Quick answers

What is the name of this new Android malware?

The malware is identified as MantaxOtax.

What specific apps or data does MantaxOtax target?

The malware can spy on WhatsApp and steal one-time passwords (OTPs).

Where does the ransomware originate according to reports?

Zimperium identifies MantaxOtax as Indonesian mobile ransomware.

Coverage (7)

Topics

Related trends

\n \n \n \n \n \n \n