SmartTube meltdown reveals hidden spy code in popular Android TV YouTube app


  • A malicious library slipped into SmartTube updates without users noticing anything unusual
  • Play Protect alerts prompted the community to investigate the suspicious build
  • The hidden file maintained remote communication channels and alerted users

SmartTube, a widely used YouTube client for Android TV, recently faced a serious compromise after an attacker gained access to the developer’s signing keys.

This breach allowed a malicious update to reach users without any warning, adding a secret native library known as libalphasdk.so [VirusTotal].

Leave a Comment

Your email address will not be published. Required fields are marked *

Scroll to Top