AI-driven attack surge against customer-facing mobile apps in 2026
Target Trend
Summary
Hide ▲
Show ▼
Customer-facing mobile apps faced a sharp rise in attacks in 2026, with 87% of monitored apps hit versus 55% in 2022. The trend matters because agentic AI is lowering the skill, time, and cost needed for code inspection, exploit generation, and malware adaptation. Apps in financial services, automotive, and medical device sectors were among the most frequently targeted, putting sensitive data and connected devices at risk. The gap between iOS and Android targeting also narrowed, showing attackers are broadening pressure across mobile ecosystems.
Related Happenings
Client-facing app attack rates surged from 55% to 87%
Target Trend
First: 20.05.2026 17:37
Last: 20.05.2026 17:37
Sources 1
About this happening:
**Client-facing apps** are seeing a sharp rise in attack pressure, with measured attack rates climbing from **55% in 2022** to **87% in 2026**. That shift matters because it shows...
Client-facing app attack rates surged from 55% to 87%
Target TrendAbout this happening: **Client-facing apps** are seeing a sharp rise in attack pressure, with measured attack rates climbing from **55% in 2022** to **87% in 2026**. That shift matters because it shows...
Trapdoor Android malvertising and ad-fraud campaign
Campaign
First: 19.05.2026 19:38
Last: 19.05.2026 19:38
Sources 1
About this happening:
The **Trapdoor** campaign is a **self-sustaining malvertising and ad-fraud operation** targeting **Android users** and turning app installs into revenue through threat-actor-contr...
Trapdoor Android malvertising and ad-fraud campaign
CampaignAbout this happening: The **Trapdoor** campaign is a **self-sustaining malvertising and ad-fraud operation** targeting **Android users** and turning app installs into revenue through threat-actor-contr...
Android 17 expands platform security and privacy protections
Security Tool/Service
First: 12.05.2026 20:00
Last: 12.05.2026 20:00
Sources 1
About this happening:
**Android 17** will add a broad set of **Google**-backed security and privacy controls next month, reducing exposure to **banking scam calls**, **device theft**, and **OTP theft**...
Android 17 expands platform security and privacy protections
Security Tool/ServiceAbout this happening: **Android 17** will add a broad set of **Google**-backed security and privacy controls next month, reducing exposure to **banking scam calls**, **device theft**, and **OTP theft**...
Coruna watering-hole and fake-site exploitation campaign
Campaign
First: 26.03.2026 13:07
Last: 26.03.2026 13:07
Sources 1
About this happening:
A suspected **Russia-aligned nation-state actor** is using **Coruna** in **watering-hole attacks in Ukraine** and a **mass exploitation campaign**, expanding the kit’s abuse beyon...
Coruna watering-hole and fake-site exploitation campaign
CampaignAbout this happening: A suspected **Russia-aligned nation-state actor** is using **Coruna** in **watering-hole attacks in Ukraine** and a **mass exploitation campaign**, expanding the kit’s abuse beyon...
IPTV app lure campaign distributing Massiv Android banking malware
Campaign
First: 19.03.2026 12:13
Last: 19.03.2026 12:13
Sources 1
About this happening:
A **recent IPTV app lure campaign** is distributing **Massiv Android banking malware**, putting users who seek **free or low-cost live sports broadcasts** at risk of device compro...
IPTV app lure campaign distributing Massiv Android banking malware
CampaignAbout this happening: A **recent IPTV app lure campaign** is distributing **Massiv Android banking malware**, putting users who seek **free or low-cost live sports broadcasts** at risk of device compro...
Timeline
-
19.05.2026 15:00 2 articles · 8d ago
Digital.ai publishes 2026 mobile app attack findings
Initial DisclosureDigital.ai's 2026 Application Security Threat Report, published on May 19, says 87% of monitored apps were attacked in 2026, up from 55% in 2022, with agentic AI lowering the skill, time, and cost needed for code inspection, exploit generation, and malware adaptation. The report says financial services, automotive, and medical device apps were among the most frequently targeted, iOS and Android targeting has nearly converged, and some apps are being attacked just hours after appearing in their respective online stores.
Show sources
- Agentic AI Accelerates Software Builds and Mobile App Attacks — www.infosecurity-magazine.com — 19.05.2026 15:00
- Agentic AI Accelerates Software Builds and Mobile App Attacks — www.infosecurity-magazine.com — 19.05.2026 15:00