RCSAndroid
MITRE ATT&CK: S0295 View on attack.mitre.org
Aliases: RCSAndroid
- First seen
- 2014-01-01 00:00:00
- Malware type
- spyware, trojan
- Family
- Malware family
- Operating systems
- android
- Profile updated
- 2026-07-07 15:31:07
Targeted industries: government-and-public-sector
Context
RCSAndroid is a sophisticated Android malware designed for surveillance and espionage. It has been used to target individuals of interest for government and law enforcement agencies.
Malware & tools used
- Audio Capture (attack-pattern)
- SMS Messages (attack-pattern)
- Stored Application Data (attack-pattern)
- Out of Band Data (attack-pattern)
- Download New Code at Runtime (attack-pattern)
- Clipboard Data (attack-pattern)
- Data from Local System (attack-pattern)
- Video Capture (attack-pattern)
- Location Tracking (attack-pattern)
Reports & references
- Trend Micro — Hacking Team Rcsandroid Spying Tool Listens To Calls Roots Devices To Get In (report)
- MITRE ATT&CK — S0295 (report)