Researchers warns that Android streaming boxes are pre-installed with malware

Researchers have discovered a number of Android streaming boxes, including the popular T95 that are being shipped with pre-installed malware. The malware, dubbed Badbox, is a complex and sophisticated piece of code that can be used to commit a variety of fraudulent activities, including ad fraud, residential proxy services, fake email and messaging accounts, and the installation of malicious code.

Badbox is believed to be spread through the regular hardware supply chain, meaning that users are unaware that their devices are infected until after they have purchased and installed them. Once installed, Badbox immediately connects to a command-and-control server to receive instructions.

In addition to the T95, Badbox has also been found on seven other set-top boxes (T95Z, T95MAX, X88, Q9, X12PLUS, and MXQ Pro 5G) as well as an Android tablet (the J5-W). These devices are all relatively inexpensive, which makes them attractive options for many users. However, researchers warn that consumers should be wary of purchasing these devices, as they may be infected with malware.

The sources for this piece include an article in ZDNET.

Top Stories

Related Articles

May 31, 2025 A coordinated supply chain attack has compromised between 500 and 1,000 e-commerce websites by exploiting vulnerabilities in 21 more...

May 31, 2025 A widely used open-source Go library, easyjson, used in healthcare, finance and even defence has come under scrutiny more...

May 31, 2025 (EDITORIAL) A messaging tool used by Trump administration officials to archive encrypted Signal messages has been hacked — more...

April 22, 2025 Anthropic, a leading artificial intelligence company, anticipates that AI-powered virtual employees could begin operating within corporate networks as more...

Jim Love

Jim Is and author and pud cast host with over 40 years in technology.