Dubbed "NoReboot," ZecOps' proof-of-concept (PoC) attack is described as a persistence method that can circumvent the normal practice of restarting a device to clear malicious activity from memory.
Making its debut with an analysis and a public GitHub repository this week, ZecOps said that the NoReboot Trojan simulates a true shutdown while providing a cover for the malware to operate -- which could include the covert hijacking of microphone and camera capabilities to spy on a handset owner.
https://www.zdnet.com/article/noreboot- ... py-on-you/