CYBERSECURITYTRACKER
TRACKING4,455 stories841 vuln stories
Permanent story citation

Android Car Malware Spreads Through Built-In Updaters for Ad Fraud, Proxy Botnet

The story is preserved as cited. Later corrections remain visibly typed and adjacent to the original snapshot.

← newsStory 4852

As cited

Citation snapshot as of .

threat intel

Android Car Malware Spreads Through Built-In Updaters for Ad Fraud, Proxy Botnet

Kaspersky researchers identified a malware family targeting Android-based vehicle head units manufactured by DoFun, discovered in June 2026. The threat spreads through built-in firmware updaters and establishes a multi-stage downloader to facilitate ad fraud and proxy botnet operations.

Why it matters: Vehicle manufacturers and fleet operators using DoFun head units face compromised in-vehicle systems that could be monetized for ad fraud or repurposed as botnet nodes, requiring immediate investigation of update mechanisms and device configurations.

Source published
First seen by Cybersecurity Tracker

Source attribution