


Perceptive Security
SOC/SIEM Consultancy

Cellik Android malware builds malicious versions from Google Play apps
Published:
16 december 2025 om 22:59:35
Alert date:
17 december 2025 om 08:01:42
Source:
bleepingcomputer.com
A new Android malware-as-a-service (MaaS) called Cellik is being advertised on underground cybercrime forums. The malware offers robust capabilities including the ability to embed itself in any app available on the Google Play Store. Cellik represents a significant threat as it allows cybercriminals to create malicious versions of legitimate applications from Google Play, potentially affecting a wide range of Android users. The malware-as-a-service model makes it accessible to less technically skilled attackers, increasing the potential for widespread distribution.
Technical details
Mitigation steps:
Affected products:
Android
Google Play Store
Related links:
Related CVE's:
Related threat actors:
IOC's:
This article was created with the assistance of AI technology by Perceptive.
