The sub-techniques beta is now live! Read the release blog post for more info.

OldBoot

OldBoot is an Android malware family. [1]

ID: S0285
Type: MALWARE
Platforms: Android
Version: 1.1
Created: 25 October 2017
Last Modified: 11 December 2018

Techniques Used

Domain ID Name Use
Mobile T1398 Modify OS Kernel or Boot Partition

OldBoot uses escalated privileges to modify the init script on the device's boot partition to maintain persistence.[1]

References