HackerFeeds

CyberSecurity News

RatHat Android Malware Abuses ADB to Retain Shell Access After Uninstall

The Hacker News
· September 18, 2026

AI summary

Researchers have identified a new Android malware called RatHat, believed to be operated by China-based threat actors, which utilizes an artificial intelligence-powered system to control compromised devices. RatHat is primarily distributed through targeted smishing and malvertising campaigns that lead to deceptive download portals. The malware is capable of abusing Android Debug Bridge to maintain shell access even after it has been uninstalled from a device.

Countries in focus

Read the full article at The Hacker Newsthehackernews.com/2026/09/rathat-android-malware-abuses-adb-to.html

This is an AI-generated brief aggregated by HackerFeeds for convenience and grounded in the source’s own summary; the related CVE, threat-group and country data is from HackerFeeds’ own indexes. The original article is the authoritative source — all rights belong to The Hacker News.