A recent investigation uncovered infrastructure supporting the Flying Eagle Android remote access trojan, identifying more than 170 command-and-control servers linked to the campaign. The malware is designed to give attackers extensive control over compromised devices, enabling surveillance, data theft, and remote command execution. The scale of the infrastructure suggests a coordinated operation capable of targeting large numbers of mobile users across multiple regions. The findings demonstrate how mature Android RAT ecosystems continue to expand, reinforcing the importance of behavior-based mobile threat detection, trusted app installation practices, and continuous monitoring for suspicious device activity.
Read the full report here.
© 2026 Zimperium. All Rights Reserved. Privacy Settings Modern Slavery Act Statement