RCSAndroid

MITRE ATT&CK: S0295 View on attack.mitre.org

Aliases: RCSAndroid

First seen
2014-01-01 00:00:00
Malware type
spyware, trojan
Family
Malware family
Operating systems
android
Profile updated
2026-07-07 15:31:07

Targeted industries: government-and-public-sector

Context

RCSAndroid is a sophisticated Android malware designed for surveillance and espionage. It has been used to target individuals of interest for government and law enforcement agencies.

Malware & tools used

  • Audio Capture (attack-pattern)
  • SMS Messages (attack-pattern)
  • Stored Application Data (attack-pattern)
  • Out of Band Data (attack-pattern)
  • Download New Code at Runtime (attack-pattern)
  • Clipboard Data (attack-pattern)
  • Data from Local System (attack-pattern)
  • Video Capture (attack-pattern)
  • Location Tracking (attack-pattern)

Reports & references

  • Trend Micro — Hacking Team Rcsandroid Spying Tool Listens To Calls Roots Devices To Get In (report)
  • MITRE ATT&CK — S0295 (report)

External references