KASPERSKY researchers have discovered the first malware specifically targeting car head units, linked to the BadBox botnet. The malware exploits a vulnerability in software update systems of an Android-based infotainment system from the Chinese company DoFun. Once compromised, attackers can use various malicious Android applications to conduct ad fraud, display ads, and more, primarily aiming to integrate affected devices into a proxy botnet.
The MoYu Group, linked to BadBox, is believed to be behind this malware, which shows an expansion of their attack vectors beyond traditional Android devices.