KevDroid

Malware type
rat
Family
Malware family
Last IoC activity
2026-05-08 12:58:19
Profile updated
2026-07-07 12:54:15

Targeted industries: government-and-public-sector technology-and-telecommunications

Targeted regions: country_code:kr

Context

KevDroid is a Remote Access Trojan (RAT) primarily targeting Android devices, known to collect sensitive information. It has been associated with espionage activities and mainly targets organizations in South Korea.

Reports & references

  • pwc.co.uk — Cyber Threats 2019 Retrospect (report)
  • malpedia.caad.fkie.fraunhofer.de — Apk.Kevdroid (report)
  • Cisco Talos — Fake Av Investigation Unearths Kevdroid (report)
  • researchcenter.paloaltonetworks.com — Unit42 Reaper Groups Updated Mobile Arsenal (report)

External references