Researchers reported a new Android click-fraud trojan family that uses TensorFlow.js machine-learning models to visually identify and tap ad elements inside a hidden WebView (“phantom” mode), rather than relying on brittle DOM/JavaScript click routines. The malware was observed distributed via Xiaomi’s GetApps store, reportedly seeded into game apps that initially appear benign and later receive malicious components via updates; a second “signalling” mode uses WebRTC to stream the virtual browser view to attackers for real-time interaction (taps, scrolling, text entry), increasing resilience against dynamic ad formats (iframes/video) and enabling more human-like fraud behavior.
Separately, Huntress described a malicious Chrome ad-blocker extension (NexShield) promoted via a Google Ad and masquerading as associated with the uBlock Origin developer, which clones uBlock Origin Lite functionality but adds a delayed payload using Chrome’s Alarms API. The extension intentionally crashes the browser (resource exhaustion via repeated makeBatch() calls and port creation) and then uses a ClickFix variant (“CrashFix”) popup to socially engineer users into running Windows terminal commands, ultimately delivering a new Python RAT attributed to KongTuke. A third item—Group-IB commentary on AI “industrializing” cybercrime (deepfake identity kits, “dark LLMs,” and agentic phishing)—provides broader context on AI-enabled criminal scaling but does not describe the same specific malware incidents.

Trace attribution and downstream blast radius.
3 events from the most recent confirmed update back to the earliest known activity.
Researchers revealed that the Android trojans use TensorFlow and TensorFlow.js in hidden WebViews to visually identify ad elements, click them in a stealthy 'phantom' mode, and in some cases stream the virtual browser view to attackers over WebRTC for live remote interaction.
Huntress reported that a malicious Chrome ad blocker extension named NexShield was promoted through a Google ad while impersonating uBlock Origin's developer. The extension cloned legitimate functionality but intentionally crashed the browser to trigger a social-engineering popup that led victims to run commands, ultimately delivering the Python backdoor ModeloRAT attributed to KongTuke on domain-joined systems.
Dr.Web reported a new Android malware family spread through Xiaomi's official GetApps store via seemingly benign games that later received malicious updates, as well as through third-party APK sites, Telegram channels, Discord, and trojanized modded apps such as fake Spotify and Netflix variants.
Vulnerabilities, threat actors, malware, products, organizations, and breaches Mallory has linked to this story.
See attribution and downstream blast radius, and whether this package or vendor reaches your builds.
3 references tracked. Mallory keeps watching after this page renders.
scworld.com
Open sourcebleepingcomputer.com
Open sourcescworld.com
Open sourceMap indicators from this story to your assets and identify affected systems in minutes.
Every observed campaign, victim, and pivot linked to actors named in this story.
Malware, exploits, and IOCs connected to the activity described here.
YARA, Sigma, and Snort rules deployed to your SIEM as soon as they’re published.
Get matching new stories delivered to your team as they break — not the next morning.
Ask questions about this story and take action on the answers.