WyrmSpy
Aliases: AndroidControl
- First seen
- 2023-01-15 00:00:00
- Malware type
- spyware, rat
- Family
- Malware family
- Last IoC activity
- 2026-05-22 17:43:07
- Profile updated
- 2026-07-07 14:05:50
Targeted industries: government-and-public-sector technology-and-telecommunications financial-services
Context
WyrmSpy, also known as AndroidControl, is a sophisticated Android spyware that is used primarily for cyber-espionage. It aims to steal sensitive information from infected devices and can remotely control and monitor the device's activities.
Reports & references
- threatfabric.com — Lightspy Mapt Mobile Payment System Attack (report)
- lookout.com — Wyrmspy Dragonegg Surveillanceware Apt41 (report)
- malpedia.caad.fkie.fraunhofer.de — Apk.Wyrmspy (report)
- cryptax.medium.com — Organizing Malware Analysis With Colander Example On Android Wyrmspy 1F3Ec30Ae33B (report)