F-Secure researchers are investigating newish malware targeting Android phones. Trojan Downloader: Android/DroidKungFu and Trojan: Android /DroidkungFu. The original application (downloaded from a third-party market) is free of malicious code. Once installed, the application would inform the user that an update is available. When the user installs this update, the updated application would then contain extra functionalities. The updated application uses an exploit to gain root privilege, which would enable it to perform more unwanted actions.”]
Source: https://www.csoonline.com/article/2134910/f-secure-warns-of-android-malware.html

