The Lookout Threat Intelligence team has discovered four Android surveillanceware tools, which are used to target the Uyghur ethnic minority group. his research indicates that these four interconnected malware tools are elements of much larger mAPT (mobile advanced persistent threat)campaigns that have been active for years. Although there is evidence that the campaigns have been active since at least 2013, Lookout researchers have been monitoring the surveillanceware families — SilkBean, DoubleAgent, CarbonSteal and GoldenEagle — as far back as 2015.
The mAPT threat actors behind this activity possess a mobile arsenal containing at least four other Android surveillance tools publicly known as HenBox1, PluginPhantom2, Spywaller3and DarthPusher4. By examining the surveillanceware apps, their signing certificates and supporting command and control (C2) infrastructure, Lookout discovered connections between these malware tools and the actors behind them which Lookout detail in this report.
Subscribe to:
Post Comments (Atom)
Critical FFmpeg Vulnerability in Home Assistant: File Theft & Root Access Explained
Critical Home Assistant FFmpeg Vulnerability Allows File Theft and Root Command Execution A newly disclosed security vulnerability in Home...
-
https://www.securityweek.com VMware Urges Immediate Updates for Critical Cloud and Virtualization Vulnerabilities Broadcom-owned VMware is...
-
A wave of frustration is hitting Indian tech enthusiasts as Perplexity AI and Airtel appear to have altered the terms of their highly publ...
-
Chinese Hackers Use Kernel Rootkit to Conceal ToneShell Malware A China-linked advanced persistent threat (APT) group associated with Hon...

No comments:
Post a Comment