Baohuo Malware Exploits Telegram X on Android Devices

26 Oct 2025

Hackers have weaponized Telegram X on Android, deploying the Android.Backdoor.Baohuo.1.origin malware that puts user devices at risk across Brazil and Indonesia since mid-2024. Originally inserted into versions of Telegram X, the backdoor lets attackers seize control over user accounts.

Malware Distribution and Targets

The malicious software, Baohuo, spreads through deceptive in-app ads and third-party store downloads. Users in Brazil and Indonesia receive Portuguese and Indonesian language-targeted versions. The affected devices, over 58,000 in number, include a wide range of Android smartphones, tablets, TV boxes, and vehicle systems spread across approximately 3,000 models.

Technical Mechanisms and Risks

Baohuo uses advanced tactics to remain hidden while enabling unauthorized access and data theft. It employs mirrored Telegram methods and the Xposed framework to disguise its activity. Through these, attackers can intercept clipboard data and manipulate app behavior, including inflating channel subscriber counts, while avoiding detection.

Command and Control Operations

Utilizing Redis channels for its command-and-control infrastructure alongside traditional servers, Baohuo coordinates its operations. Device information and user data, including authentication tokens and message histories, are extracted every three minutes, posing a significant threat to privacy and security.

Top charts for Mobile Android

uTorrent

uTorrent

Latest update uTorrent download for free for Windows PC or Android mobile

5
1032 reviews
7508622
downloads
Zona

Zona

Latest update Zona download for free for Windows PC or Android mobile

4
614 reviews
1735635
downloads
WinRAR

WinRAR

Streamline file management with fast compression, secure your documents, and save space.

5
735 reviews
746776
downloads
Minecraft

Minecraft

Shape environments, explore vast worlds, and survive against monsters with endless creativity.

5
750 reviews
496765
downloads

Comments (0)

No comments yet. Be the first to comment!