ESET Whitepaper

Android Ransomware: From Android Defender to DoubleLocker

The Android ransomware scene has transformed a lot since its beginning.

The initial appearances on this platform were cases in which extortion functionality was added to fake antiviruses, scaring the victim into believing that their device is infected. Similar tactics were used later by the so-called police ransomware variants.

However, over the years, the cybercriminals have diversified their toolkits and added misuse of the native screen-locking functionality of Android devices as well as data encryption seen in a growing number of Filecoder and Diskcoder families on PCs to their portfolio.

In this paper, readers will find an analysis of the most noteworthy Android ransomware examples found and analyzed by ESET researchers since 2013, the year of Android ransomware’s debut.

To read it, please enter your details in the form.

Request Your Newsletter