A new version of the RedHook Android malware abuses the Android Wireless Debugging (Wireless ADB) mechanism in a novel way to gain shell-level privileges without requiring a computer connection.
RedHook malware marks a new evolution of threats against Android by exploring legitimate features of the system itself to get a level of control that would normally require root access until recently. Instead of exploring complex kernel vulnerabilities, criminals have gone on to abuse features created for developers and advanced users, making the attack more difficult to identify and extremely dangerous. The latest variant of RedHook, analyzed b…