Trend Micro spotted a new variant of the X loader Trojan that is targeting Android devices by posing as a security application. The malware also attempts to infect Apple devices (iPhones and iPads) through a malicious iOS profile. X loader has been observed since 2018, but experts traced it back to January 2015, Trend Micro linked the threat to the FakeSpy malware. Attackers hosted the malicious code on fake websites mimicking legitimate websites such as the one belonging to a Japanese mobile phone operator. The malicious code was observed in previous attacks posing as Facebook, Chrome, and other legitimate applications.”]
Source: https://securityaffairs.co/wordpress/83317/breaking-news/xloader-6-twitter.html