An investigation into a mobile spyware campaign that we call PhantomLance involved a backdoor Trojan that the attackers distributed via dozens of apps in Google Play and elsewhere. The spyware is able to gather geo-location data, call logs and contacts; and can monitor SMS activity. Naikon APT is a well-established threat actor in the APAC region. In the past, the group targeted communications and sensitive information from executive and legislative offices, law enforcement, government administrative, military and intelligence organizations within Southeast Asia.”]
Source: https://securelist.com/it-threat-evolution-q2-2020/98230/