# Kaspersky identifies malware distributed through Android car-head-unit updaters

_Friday, August 21, 2026 at 11:41 AM EDT · Security, Infrastructure · Latest · Tier 2 — Notable_

![Kaspersky identifies malware distributed through Android car-head-unit updaters — Primary](https://blogger.googleusercontent.com/img/b/R29vZ2xl/AVvXsEi1EQE-DqLXTzpjwGf3nQnM4CTnjibkKl_2ersn8abw3Gmqoc5MUaFC2LvkA7c6Xoa0XBPZeHL4wHHiXU7Pc9nGLcI1zTorwFTwvYXfww4Q68oSUrgcQhmBzQBNqYp-woIZFK_I1OOsnBNptiwA90VHhpE_hvlz3qdFomOmOMLreYe5YCenvR2CeawvRrMU/s1700-e365/car.png)

Kaspersky says it identified malware distributed through built-in update mechanisms in DoFun Android-based automotive head-unit firmware. The campaign uses a system app's update channel to deliver a downloader that can retrieve further payloads for ad fraud and a proxy botnet, according to the researchers. Kaspersky attributes the activity with high confidence to the MoYu Group and says the software-distribution issue was addressed after responsible disclosure. The malware ran without a user interface and contacted command servers for instructions.

## Sources

- [The Hacker News](https://thehackernews.com/2026/08/android-car-malware-spreads-through.html)

---
Canonical: https://techandbusiness.org/newswire/g9JqC0JLY1JBlIaAzpwmkt
Retrieved: 2026-08-22T04:07:42.621Z
Publisher: Tech & Business (techandbusiness.org)
