Fake Telegram X App Threat: 58,000 Android Devices Under Baohuo Siege!
A new Android threat, Android.Backdoor.Baohuo.1.origin, is spreading via fake Telegram X apps, giving attackers full control of users’ accounts. Disguised as a dating-enhanced version, it stealthily connects to remote servers. Victims, beware! This malware is as sneaky as a ninja in a library, but far less educational.

Hot Take:
Breaking news: Android users are being catfished by a Trojan horse that promises a souped-up Telegram X experience but delivers a one-way ticket to cyber-chaos. The latest malware, Baohuo, is like that shady friend who borrows your car and secretly sells it on Craigslist while you’re at work. Stay vigilant, folks—this app is the digital equivalent of a wolf in sheep’s clothing!
Key Points:
- Baohuo malware poses as a fake Telegram X app to hijack user accounts.
- Over 58,000 devices have been affected globally, with heavy impacts in India, Brazil, and Indonesia.
- The malware uses Redis databases for command and control operations.
- It’s found on third-party app stores masquerading as legitimate Telegram uploads.
- Doctor Web advises downloading Telegram only from official sources to avoid infection.
Already a member? Log in here
