DoubleLocker
- First seen
- 2017-10-01 00:00:00
- Malware type
- ransomware
- Family
- Malware family
- Last IoC activity
- 2026-07-10 14:43:25
- Profile updated
- 2026-07-07 14:05:44
Context
DoubleLocker is an Android ransomware that encrypts user data and changes the device's PIN, effectively locking the user out. Initially spread via malicious apps, it is among the first ransomware to misuse Android's accessibility services.
Reports & references
- malpedia.caad.fkie.fraunhofer.de — Apk.Doublelocker (report)
- ESET — Doublelocker Innovative Android Malware (report)