# Kaspersky links Android car-head-unit malware to proxy-botnet operation

_Saturday, August 22, 2026 at 10:14 AM EDT · Security · Latest · Tier 2 — Notable_

![Kaspersky links Android car-head-unit malware to proxy-botnet operation — Primary](https://www.bleepstatic.com/content/hl-images/2026/08/21/car.jpg)

Kaspersky researchers identified malware distributed through a legitimate update app on Android-based car head units from DoFun, BleepingComputer reported. The researchers attributed the operation to the MoYu group and said it used the JarService malware to download additional encrypted payloads. The malware collects device information, receives commands and primarily loaded a reverse-proxy module, while also making requests associated with click fraud. Kaspersky said DoFun told it the problem had been resolved.

## Sources

- [BleepingComputer](https://www.bleepingcomputer.com/news/security/hackers-infect-android-car-head-units-with-proxy-botnet-malware/)

---
Canonical: https://techandbusiness.org/newswire/f6Ma7Rk52BrOh_TPF2kVWn
Retrieved: 2026-08-22T17:04:12.727Z
Publisher: Tech & Business (techandbusiness.org)
