Manic Android Malware Exfiltrates Data From Offline Phones via Nearby Infected Devices

Malware on Android Devices Creates New Path for Data Theft, Even When Phones Are Offline

A newly discovered strain of malware has found a way to extract sensitive data from offline Android devices by exploiting nearby infected gadgets. The Manic Android Malware uses Bluetooth Low Energy (BLE) signals to locate and connect with other compromised phones, allowing it to siphon off valuable information, even when the device is not connected to the internet.

The malware’s authors have cleverly designed their exploit to take advantage of Android’s built-in proximity-based features. When an infected phone comes within range of another device, the malware sends a low-power Bluetooth signal to establish a connection. Once linked, the malicious software can then transfer data between the two devices, essentially turning nearby phones into unwitting accomplices in its attack.

The affected users are likely individuals who have downloaded and installed apps from unverified sources or clicked on phishing links. The malware is thought to be spread through drive-by downloads, where a person visits a compromised website that secretly loads malicious software onto their device. In this way, the attackers can quietly infect devices without raising any suspicions.

This exploit highlights the increasingly sophisticated tactics employed by cybercriminals to bypass traditional security measures. Traditional cybersecurity solutions often focus on protecting against network-based threats, but the Manic Android Malware shows how attackers are now targeting vulnerabilities in Bluetooth and other proximity-based technologies. This new threat vector underscores the need for a more comprehensive approach to mobile device security.

The implications of this discovery are significant, as it demonstrates that even offline devices can be compromised through nearby infected phones. This means users must remain vigilant about their online activities, including the apps they download and the websites they visit. To mitigate this risk, users should ensure their devices have the latest software updates installed and consider enabling Bluetooth’s “Scanning for Devices” feature to detect nearby threats.

In light of this new threat, it’s essential for individuals to adopt a layered security approach that includes regular device maintenance, app vetting, and awareness about potential attack vectors. By staying informed and taking proactive steps to secure their devices, users can reduce the risk of falling prey to such sophisticated malware campaigns.


Source: The Hacker News — 2026-08-20