Malwarebytes has found a widely circulating Android backdoor that’s so pernicious that it survives factory resets. It’s so persistent that it’s impossible to remove without taking unusual measures. A different researcher has filled in some of the missing pieces to explain how it happened. The malware was the result of files downloaded and installed by a notorious trojan known as Triada, which ran once the x helper app was installed. The backdoor has access to sensitive data, including browser cookies used to sign in to sites automatically.”]

