MobbleOpen in Mobble ⇢
Technology · Cybersecurity · published 2026-09-24 · via The Hacker News

Android Spyware Disguised as MDM App Hits Logistics Companies

Image via The Hacker News
Image via The Hacker News

A new Android spyware campaign dubbed Corp MDM is targeting logistics firms. Attackers use fake Google Play pages for CEVA and TKW Logistics to distribute a malicious APK disguised as a system service. The app steals SMS messages and redirects calls.

Expanded Detail

The campaign exploits trust in mobile device management tools, a common enterprise necessity, to slip past user suspicion. By cloning Google Play store pages for established logistics brands, the attackers create a convincing front for their malicious download, preying on employees who may expect to install work-related software.

Once active, the spyware operates with elevated system permissions, allowing it to intercept SMS traffic and reroute phone calls. This level of access could compromise two-factor authentication codes and disrupt critical communications within the supply chain, making the logistics sector a particularly vulnerable target for this type of intrusion.

Context

This campaign could disrupt operations at targeted firms by intercepting time-sensitive delivery confirmations and security codes. Employees handling logistics data may face credential theft, while clients could see shipments delayed or misrouted due to compromised communications. The broader logistics industry may need to reassess mobile device policies, as the attack demonstrates how trusted enterprise tools can be weaponized, potentially eroding confidence in mobile-first supply chain management.

Expanded detail and Context are AI-generated analysis; the linked article remains the authoritative source.
Read the full article at The Hacker News →
Related stories
RemControl Android trojan spreads via fake IPTV app, steals banking data across Europe and Canada · Cybersecurity
AI Chatbots Poisoned for Disinformation and Phishing · Cybersecurity
Supply-Chain Attack on MemTensor Packages Delivers Cross-Platform Credential Stealer · Cybersecurity
AI-driven attack wave hits online retailers, swiping over 600,000 card records · Cybersecurity
This summary is Al-enhanced to contain extended analysis and broader social context. The original is {NAME); the linked article is the authoritative source. Original headline: “Corp MDM Spyware Targets Logistics Firms, Steals New SMS and Redirects Calls.” Browse more stories.