Summary
Kaspersky researchers have discovered new Android malware targeting DoFun car infotainment systems, abusing TWCore updates to install loaders and a reverse proxy, aiming to create a botnet of connected cars. The campaign is attributed to MoYu Group, and DoFun has since patched the vulnerabilities.