A new threat named Sturnus has been identified by security experts at Threat Fabric, posing a risk to users of WhatsApp, Telegram, and Signal on Android devices. The malicious Trojan can potentially compromise user privacy by allowing hackers to remotely control the device, monitor user activity, and conduct fraudulent transactions.
Sturnus, initially discovered by MTI Security researchers, has the ability to intercept and view messages, including sensitive information like banking credentials. This malware is unique in its capability to circumvent encrypted messaging apps, such as WhatsApp, Telegram, and Signal, by capturing decrypted content directly from the device screen.
Although Sturnus is currently not widespread, users should remain vigilant as its distribution could escalate quickly, affecting millions of Android users. Threat Fabric warns that Sturnus is a sophisticated threat with multiple attack methods, giving attackers extensive control over infected devices, compromising financial security and privacy.
To mitigate the risk of such attacks, users are advised to only download apps from the official Google Play Store, avoid sideloading software, and review app ratings before installation. While Sturnus is a relatively new threat, its advanced capabilities highlight the importance of maintaining security measures on Android devices.
