Android remote keyboard apps with +2M downloads vulnerable

The apps PC Keyboard, Lazy Mouse, and Telepad have been discovered to have serious vulnerabilities in their code:

Critical RCE bugs in Android remote keyboard apps with 2M installs (

This is the case for both the free and paid for versions and could expose the keypresses to monitoring and allow for the remote execution of malicious code. CyRC research uncovered the issues in October 2022 and alerted the developers who have not responded or issued fixed software – prompting CyRC to issue their own security alert.

My advice: Either you or your IT support need to check whether these issues impact your systems. You need to have a master document that details your systems, hardware, software, online, networks, back-ups, suppliers etc – so when cyber security (or operational) issues arise you and your support teams can quickly check if you are affected. From there you can take fast, effective action.