SpyWaller was first discovered in 2014 and came to the attention of security researchers due to its use of iptables in order to drop network connections made by antivirus applications. The latest variants are capable of accessing the sensitive data of over 20 different apps, in addition to being able to record calls, capture surrounding audio, track a device’s location, take pictures with the camera, and retrieve a list of installed packages. All Lookout customers are protected from this threat and most variants have been found to include exploits for local vulnerabilities.”]

