Saturday, August 13, 2022
Correct Success
  • Credit
    • How to get out of debt
    • Credit Cards
    • How to repair credit
  • Finance
    • Financial success
    • Financial management
    • Financial health
  • Insurance
  • Loans
    • Business loans
    • Mortgage Loan
    • Home Loan
    • Personal Loan
    • Student Loan
  • Money
    • Taxes
    • Investment
  • Videos
No Result
View All Result
Correct Success
  • Credit
    • How to get out of debt
    • Credit Cards
    • How to repair credit
  • Finance
    • Financial success
    • Financial management
    • Financial health
  • Insurance
  • Loans
    • Business loans
    • Mortgage Loan
    • Home Loan
    • Personal Loan
    • Student Loan
  • Money
    • Taxes
    • Investment
  • Videos
No Result
View All Result
Correct Success
No Result
View All Result
ADVERTISEMENT

Facebook finds new Android malware used by APT hackers

7 days ago
in Financial success, Money
Reading Time: 3 mins read
ShareShareShareShare

Meta (Facebook) has released its Q2 2022 adversarial threat report, and among the highlights is the discovery of two cyber-espionage clusters connected to hacker groups known as ‘Bitter APT’ and APT36 (aka ‘Transparent Tribe’) using new Android malware.

These cyberspying operatives use social media platforms like Facebook to collect intelligence (OSINT) or to befriend victims using fake personas and then drag them to external platforms to download malware.

Both APT36 and Bitter APT were observed orchestrating cyber-espionage campaigns earlier this year, so Facebook’s report gives a new dimension to their recent activities.

The Pakistan-aligned state-sponsored actor APT36 was recently exposed in a campaign targeting the Indian government using MFA-bypassing tools.

The Bitter APT was also observed in May 2022, targeting the government of Bangladesh with a new malware that featured remote file execution capabilities.

Bitter APT using new Android spyware

Meta’s report explains that Bitter APT engaged in social engineering against targets in New Zealand, India, Pakistan, and the United Kingdom, using lengthy interactions and investing significant time and effort.

The group’s goal was to infect its targets with malware, and for this purpose, it used a combination of URL shortening services, compromised sites, and third-party file hosting providers.

“This group has aggressively responded to our detection and blocking of its activity and domain infrastructure,” comments Meta in the report.

“For example, Bitter would attempt to post broken links or images of malicious links so that people would have to type them into their browser rather than click on them — all in an attempt to unsuccessfully evade enforcement.”

Bitter’s recent attacks also revealed additions in the threat actor’s arsenal in the form of two mobile apps, targeting iOS and Android users, respectively.

The iOS version was a chat app delivered via Apple’s Testflight service, a testing space for app developers. Typically, threat actors convince victims to download these chat apps by presenting them as “safer” or “more secure.”

The Android app discovered by Facebook is a new malware that Meta named ‘Dracarys,’ which abuses accessibility services to give itself increased permissions without the user’s consent. 

From there, it would inject itself into various Android apps to act as spyware, stealing text messages, installing apps, and recording audio.

“Bitter injected Dracarys into trojanized (non-official) versions of YouTube, Signal, Telegram, WhatsApp, and custom chat applications capable of accessing call logs, contacts, files, text messages, geolocation, device information, taking photos, enabling microphone, and installing apps,” explained Meta’s report.

Meta underscores that Dracarys passes undetected on all existing anti-virus engines, highlighting Bitter’s capabilities to create stealthy custom malware.

APT36 relies on commodity tools

APT36 is a much less sophisticated threat actor, yet still, a potent threat that relies on intricate social engineering tactics and readily available malware.

The latest activity discovered by Meta targeted people in Afghanistan, India, Pakistan, the United Arab Emirates, and Saudi Arabia, focusing specifically on military officials and human rights activists.

Members of APT36 created accounts on Facebook posing as recruiters for spoofed or fictitious firms and used the WeTransfer file sharing service to send supposed job offers to their targets.

The downloaded files contained a modified version of XploitSPY, which Meta named ‘LazaSpy.’ The actor’s modifications include a failed implementation of a geo-restricted targeting mechanism.

Apart from LazaSpy, APT36 also employed Mobzsar, a commodity malware that enables operators to access call logs, contact lists, SMS, GPS data, photos, and the microphone.

— to www.bleepingcomputer.com

Tags: AndroidAPTcorrect successFacebookfacebook new nameFBFinancial managemefindshackersmalwaremetameta facebookmeta platforms
ShareTweetPinSend

please Subscribe for further updates

Unsubscribe
Previous Post

Accountability for $10M COVID funds for Fulton Cosmall businesses

Next Post

Consequences Of Not Paying Debts And Loans On Time

Related Posts

Meta mum on election misinformation efforts as midterms loom

by Tim Hartwell
0
4

This month, Meta also rolled out a new feature for political ads that allows the public to search for details...

Facebook parent Meta set to raise $10 bln in bond debut -sources

by Tim Hartwell
0
2

Aug 4 (Reuters) - Facebook-parent Meta Platforms Inc is set to raise $10 billion in its first-ever bond offering on...

Facebook still has trouble removing white supremacists, study says

by Tim Hartwell
0
4

Facebook's crackdown on hate speech apparently has room for improvement. As The Washington Post explains, the non-profit watchdog Tech Transparency...

Facebook suddenly won’t stay in dark mode and aaarggh, my eyes!

by Tim Hartwell
0
3

Aaarggh, my eyes!Following the latest app update on iOS, my Facebook app keeps reverting to light mode, no matter how...

Lessons from Meta’s Data Deluge

by Tim Hartwell
0
4

Back in the day, when Mark Zuckerberg launched the basic skeletal structure of Facebook, the company’s founders formed a hypothesis...

Nebraska cops used Facebook messages to investigate an alleged illegal abortion

by Tim Hartwell
0
4

A 41-year-old woman is facing felony charges in Nebraska for allegedly helping her teenage daughter illegally abort a pregnancy, and...

Next Post

Consequences Of Not Paying Debts And Loans On Time

Horoscope on the weekend: who is waiting for financial success

Horoscope on the weekend: who is waiting for financial success

This Raksha Bandhan Make a Sister's Dream into Reality

This Raksha Bandhan Make a Sister's Dream into Reality

Zee Business LIVE 29th July 2022 | Business & Financial News | Share Bazaar | Anil Singhvi

Minnesota's film industry welcomes 6 projects after launch of tax credit program

Minnesota’s film industry welcomes 6 projects after launch of tax credit program

2
Sphere 3D : Management's Discussion and Analysis of Financial Condition and Results of Operations - Form 6-K

Sphere 3D : Management’s Discussion and Analysis of Financial Condition and Results of Operations – Form 6-K

2
Harris, Oakland leaders announce $50-million initiative to invest in children, end poverty

Harris, Oakland leaders announce $50-million initiative to invest in children, end poverty

2

10 big takeaways from 24-21 loss in preseason opener

0

Meta mum on election misinformation efforts as midterms loom

4
Metro Atlanta woman paid woman $24K in tax returns, only to have it immediately stolen – WSB-TV Channel 2

Metro Atlanta woman paid woman $24K in tax returns, only to have it immediately stolen – WSB-TV Channel 2

2

Tags

business businessloan business loans cards correct correct Insurance correctsuccess correct success correct_news credit Credit Cards credit score debit debit cards DEBT Facebook facebook new name FB Finance financial Financial health Financial manageme Financial management Financial success How to get out of debit How to repair credit Insurance Investing investment IPO loan Loans Market meta meta facebook meta platforms money news Personal Personal Finance personalloan success tax Taxes US

Categories

  • Credit
  • Credit Cards
  • Finance
  • Financial health
  • Financial management
  • Financial success
  • How to get out of debt
  • How to repair credit
  • Insurance
  • Investment
  • ipo updates
  • Loans
    • Business loans
    • Home Loan
    • Mortgage Loan
    • Personal Loan
    • Student Loan
  • Money
  • Taxes
  • Videos
Minnesota's film industry welcomes 6 projects after launch of tax credit program

Minnesota’s film industry welcomes 6 projects after launch of tax credit program

2
Sphere 3D : Management's Discussion and Analysis of Financial Condition and Results of Operations - Form 6-K

Sphere 3D : Management’s Discussion and Analysis of Financial Condition and Results of Operations – Form 6-K

2
Harris, Oakland leaders announce $50-million initiative to invest in children, end poverty

Harris, Oakland leaders announce $50-million initiative to invest in children, end poverty

2

10 big takeaways from 24-21 loss in preseason opener

0

Meta mum on election misinformation efforts as midterms loom

4
Metro Atlanta woman paid woman $24K in tax returns, only to have it immediately stolen – WSB-TV Channel 2

Metro Atlanta woman paid woman $24K in tax returns, only to have it immediately stolen – WSB-TV Channel 2

2
Correct-Success-Logo

Correct Success | Finance, Debt, Loan, Credit etc

Categories

  • Business loans
  • Credit
  • Credit Cards
  • Finance
  • Financial health
  • Financial management
  • Financial success
  • Home Loan
  • How to get out of debt
  • How to repair credit
  • Insurance
  • Investment
  • ipo updates
  • Loans
  • Money
  • Mortgage Loan
  • Personal Loan
  • Student Loan
  • Taxes
  • Videos

Recent Post

  • Minnesota’s film industry welcomes 6 projects after launch of tax credit program
  • Sphere 3D : Management’s Discussion and Analysis of Financial Condition and Results of Operations – Form 6-K
  • Harris, Oakland leaders announce $50-million initiative to invest in children, end poverty

Navigation

  • Home
  • About Us
  • Contact Us
  • Privacy & Policy
  • Home
  • About Us
  • Contact Us
  • Privacy & Policy

© 2020 Correct Success. Design By Techdesire

No Result
View All Result
  • Credit
    • How to get out of debt
    • Credit Cards
    • How to repair credit
  • Finance
    • Financial success
    • Financial management
    • Financial health
  • Insurance
  • Loans
    • Business loans
    • Mortgage Loan
    • Home Loan
    • Personal Loan
    • Student Loan
  • Money
    • Taxes
    • Investment
  • Videos

© 2020 Correct Success. Design By Techdesire

This website uses cookies. By continuing to use this website you are giving consent to cookies being used. Visit our Privacy and Cookie Policy.
Go to mobile version