← registry

RatHat Android Malware Abuses ADB to Retain Shell Access After Uninstall

RatHat, an Android malware operated by China-based threat actors, uses AI-powered navigation to control compromised devices and maintains persistence through ADB abuse after uninstallation, distributed via SMS phishing and malicious ads.

Categorymisuse
Severityhigh
AI systemagent
Sectorstechnologyconsumer
Harm typessecurityprivacyfinancial
Lifecycle stageoperation
Actorexternal_attacker
Published2026-09-18 06:17:25

Summary is Secursion's own; full text lives at the source. Attribution preserved.