Exploit kit targets Android devices, delivers ransomware

April 26, 2016

Ransomware hitting mobile devices is not nearly as widespread as that which targets computers, but Blue Coat researchers have discovered something even less common: mobile ransomware delivered via exploit kit.

The ransomware in question calls itself Cyber.Police (the researchers have dubbed it Dogspectus), and does not encrypt users’ files, just blocks the infected Android device. It purports to be part of an action by the (nonexistent) “American national security agency” against unspecified illegal actions ostensibly performed by the user:

