Skip to content

Malware

badbazaar

BadBazaar is a type of malware primarily functioning as a spyware.

badbazaar is a Android malware family operated by APT15.

Background

BadBazaar is malware that operates chiefly as spyware. Built to target both Android and iOS devices, it commonly spreads through malicious apps obtained from unofficial app stores, third-party sites, Telegram channels, and social engineering. After installation, it monitors the victim by capturing SMS messages, recording the screen, and logging keystrokes. It can also run remote commands and fetch and install additional malicious apps, deepening the compromise of the infected device.


Source: Malpedia (Fraunhofer FKIE).