Beta The Briev beta is out. Free on iPhone via TestFlight — install it in under a minute.

Join the beta ↗
Briev
Live
Technology

RedHook Android Trojan resurfaces, now targeting ordinary smartphones

A revamped RedHook Android RAT, first spotted in July 2025, can now infect standard phones and steal personal and banking data.

RedHook, an Android Remote Access Trojan uncovered in July 2025, has reemerged with expanded capabilities that affect even unrooted smartphones. By tricking victims into granting accessibility access, the trojan can masquerade as official government or banking applications and exfiltrate sensitive data such as identification numbers and login details. Early infections were concentrated in Vietnam, but the new strain appears poised for wider distribution.

Security experts warn that once installed, RedHook is extremely hard to eradicate. Users are advised to decline suspicious accessibility requests and keep their devices up to date. The episode highlights the escalating threat landscape for mobile users worldwide.

Why it matters

The updated RedHook Trojan can steal financial and personal data from everyday Android phones, raising mobile security risks.

In this story

redhookandroid malwareremote access trojanaccessibility settingsbanking credentialsmobile securityVietnam
Get the beta ↗