Airstalk Malware Exploits MDM Tools in Supply Chain Attacks

Airstalk Malware Exploits MDM Tools in Supply Chain Attacks

First seen 4 Nov 2025, 11:10 UTC Computing 80% similarity 52.1

Article Content

Browse articles
ThreatCluster

A new malware variant named Airstalk has been discovered, linked to suspected nation-state hackers. This malware targets mobile device management tools, specifically leveraging the AirWatch API to create covert command-and-control channels. The campaign is believed to be part of a broader supply chain attack, affecting trusted enterprise environments.

ThreatCluster AI How this analysis works

Community

Browse all →