Android Car Malware Spreads Through Built-In Updaters for Ad Fraud, Proxy Botnet
- Posted on August 21, 2026
- By The Hacker News
- 1 Views
- 1 min read
Cybersecurity researchers have uncovered a sophisticated malware campaign targeting Android automotive systems through legitimate software update mechanisms. The attack leverages DoFun head unit updaters to inject JarService malware, which orchestrates fraudulent advertising activities and deploys the Zhima reverse proxy botnet module. This represents a critical vulnerability in vehicle infotainment systems, where attackers abuse trusted update channels to establish persistent control and monetize compromised devices through ad fraud schemes.
Summary auto-generated by AI from the original publisher's content. Editorial standards.