← Back to feed
Threat Actors & CampaignsEmerging1 sourceAug 22, 2026 · 08:55via Security Affairs

Malware Hijacks Android Car Head Units

Brief

Malware is abusing car infotainment updates to install proxy software, turning Android head units into nodes for the BADBOX network.

Kaspersky researchers found something in June 2026 that made them stop and look twice: an Android app with no interface at all, installed like any ordinary app but making zero effort to disguise itself as legitimate.

Their report documents the first known malware infection targeting car head units, the Android-based infotainment and control systems built into many modern vehicles, spread through the vehicle’s own official update mechanism.

Head units run Android for practical reasons, since manufacturers can build on existing source code and add their own custom system apps during production. That flexibility cuts both ways.

Read more on Security Affairs