Cybersecurity researchers have identified an Android-targeted threat dubbed RatHat, which exploits the operating system's Wireless Debugging feature. By abusing this developer-oriented functionality, the malware is capable of securing shell-level access to the device without needing a traditional physical cable connection.

Once access is granted, the threat can execute commands with elevated privileges and circumvent standard operating protections. The campaign reportedly focuses on capturing sensitive credentials, specifically targeting users' banking PINs to compromise financial accounts.

Wireless Debugging is built to help developers test and deploy apps across local networks, but leaving the setting enabled poses significant risks if exploited. Users are generally urged to keep developer options disabled when not in active use and to stay vigilant regarding unexpected permission prompts.

For full technical details and mitigation advice, check the original coverage on gbhackers.com.