ESET Research: Spy apps by the GREF group pose as Signal and Telegram; attack users in Europe and the US

ESET researchers have identified two active campaigns targeting Android users, where the threat actors behind the tools for Telegram and Signal are attributed to the APT group GREF. Most likely active since July 2020 and since July 2022, respectively for each malicious app, the campaigns have distributed the Android BadBazaar espionage code through the Google … More ESET Research: Spy apps by the GREF group pose as Signal and Telegram; attack users in Europe and the US

Hackers steal Signal, WhatsApp user data with fake Android chat app ‘SafeChat’

According to Bleeping Computer*, Hackers are using a fake Android app named ‘SafeChat’ to infect devices with spyware malware that steals call logs, texts, and GPS locations from phones. The Android spyware is suspected to be a variant of “Coverlm,” which steals data from communication apps such as Telegram, Signal, WhatsApp, Viber, and Facebook Messenger. … More Hackers steal Signal, WhatsApp user data with fake Android chat app ‘SafeChat’

ESET Research discovers StrongPity APT group’s espionage campaign targeting Android users with trojanized Telegram app

ESET researchers identified an active StrongPity campaign distributing a fully functional but trojanized version of the legitimate Telegram app. ESET researchers identified an active StrongPity APT group campaign leveraging a fully functional but trojanized version of the legitimate Telegram app, which despite being non-existent, has been repackaged as „the“ Shagle app. This StrongPity backdoor has … More ESET Research discovers StrongPity APT group’s espionage campaign targeting Android users with trojanized Telegram app

ESET Research discovers scheme to steal cryptocurrency from Android and iPhone users

The attackers distributed malicious apps via fake and legitimate sites, and Telegram and Facebook groups. This sophisticated malicious cryptocurrency scheme targets mobile devices using Android or iOS operating systems (iPhones). The malicious apps were distributed through fake websites, mimicking legitimate wallet services and promoted with ads placed on legitimate sites using misleading articles, and via … More ESET Research discovers scheme to steal cryptocurrency from Android and iPhone users

Hidden in plain sight: How the dark web is spilling onto social media

A trip into the dark corners of Telegram, which has become a magnet for criminals peddling everything from illegal drugs to fake money and COVID-19 vaccine passes. Just a few years ago, illicit services and online contraband were firmly sourced in the hidden, largely untraceable depths of the internet: the dark web. People frequenting dark web … More Hidden in plain sight: How the dark web is spilling onto social media