A New Form of Android Malware Exfiltrates Data from Offline Devices
Cybersecurity researchers have uncovered a sophisticated piece of malware that can extract sensitive data from offline Android devices by using nearby infected phones as “data bridges.” This novel approach to mobile malware allows attackers to bypass traditional security measures, raising concerns about the vulnerability of personal and business data stored on mobile devices.
The malware, dubbed “Manic,” infects an Android phone when a user downloads a seemingly innocuous app. Once installed, Manic quietly establishes connections with other infected phones within range, forming a network that enables data exfiltration from offline devices. This is achieved through the use of Bluetooth or Wi-Fi connectivity, even if the targeted device itself is not connected to any network.
The affected individuals are likely those who have visited compromised websites or downloaded malicious apps in the past. It’s estimated that tens of thousands of Android users may be at risk, with the malware primarily targeting business and government organizations due to their sensitive data storage practices. The researchers note that a single infected device can serve as a “data bridge” to compromise multiple offline devices within its vicinity.
The underlying mechanism behind Manic is rooted in the concept of cross-domain privilege escalation (CDPE). Essentially, the malware creates an unauthorized network connection between devices, allowing it to sidestep traditional security firewalls and access sensitive data. This technique is particularly concerning because it allows attackers to bypass even the most robust mobile security measures.
The emergence of Manic highlights the increasing sophistication of mobile threats and underscores the need for more vigilant mobile security practices. As Android users continue to store an ever-growing amount of personal and business data on their devices, the stakes are higher than ever. With Manic’s ability to exfiltrate data from offline devices, it’s essential that individuals take proactive steps to secure their mobile data.
To protect themselves from this type of threat, readers should be cautious when downloading apps from unfamiliar sources and ensure their device is equipped with robust security features such as a reputable antivirus solution and up-to-date operating system. Regularly backing up sensitive data to a secure location can also mitigate the impact of potential data breaches. By staying informed and taking proactive measures, Android users can minimize their exposure to these types of threats and safeguard their mobile data.
Source: The Hacker News — 2026-08-20