Cellik Android Malware Uses One-Click APK Builder to Hide in Play Store Apps
## Introduction to Cellik Android Malware
Introduction to Cellik Android Malware
A newly identified Android Remote Access Trojan (RAT) known as Cellik has emerged, offering advanced mobile surveillance capabilities. This malware allows attackers to inject malicious code into legitimate Google Play Store applications, facilitating widespread distribution.
Cellik provides operators with complete device control through a user-friendly dashboard. Key functionalities include:
Real-time screen streaming Remote User Interface (UI) manipulation Live notification capture, including private messages and one-time passcodes Keystroke logging Access to the entire file system with encryption-protected exfiltration Covert multimedia capture using the device's camera and microphone
Cellik distinguishes itself by integrating with the Google Play Store, featuring a one-click APK builder. Attackers can select legitimate applications and generate trojanized versions embedded with malicious payloads, bypassing traditional distribution barriers.
A newly identified Android Remote Access Trojan (RAT) known as Cellik has emerged, offering advanced mobile surveillance capabilities.
The malware includes a hidden browser module for stealth browsing and phishing, enabling attackers to navigate websites and capture credentials without alerting the device owner. The advanced injection system allows simultaneous attacks on multiple applications, including banking apps and social media platforms.
Cellik's ability to bypass Google Play Protect detection by embedding payloads in trusted applications poses a significant threat. This development highlights the need for enhanced mobile threat detection, app security scanning, and behavioral analysis tools to prevent widespread compromise.
Cellik reflects the growing sophistication of the Android malware-as-a-service market. By providing advanced features like AI-driven behavioral analysis and cryptocurrency wallet targeting at accessible price points, it lowers the barrier for executing high-level surveillance operations.
The emergence of platforms like Cellik underscores the need for increased investment in mobile security to address threats that are now comparable to those targeting desktop environments.
Based on reporting by GBHackers.
