Bleepingcomputer
DroidLock Malware Targets Android Users with Ransom and Surveillance
First seen 11 Dec 2025, 15:51 UTC
•



+14
•80% similarity
•33.3
Share:
Export
Ask AI about this cluster
Analyzing cluster data...
Referenced clusters:
Something went wrong. Please try again.
Cluster AI
Ask questions about this threat cluster with AI-powered analysis.
Get Researcher $29.99/moArticle Content
Browse articles
DroidLock is a newly identified Android malware that locks devices and demands ransom from users, primarily affecting Spanish-speaking regions. It utilizes phishing tactics to steal credentials and can remotely control devices, accessing sensitive information like text messages and call logs. The malware also employs a VNC sharing system for complete device control.
ThreatCluster AI
How this analysis works