Malware Archives - GBHackers Security | #1 Globally Trusted Cyber Security News Platform https://gbhackers.com/category/malware/ GBhackers Offering Exclusive Cyber Security News Coverage, New Research papers & Technology Updates. Mon, 11 Nov 2024 11:02:46 +0000 en-US hourly 1 https://wordpress.org/?v=6.6.2 https://gbhackers.com/wp-content/uploads/2024/09/cropped-gbh-32x32.png Malware Archives - GBHackers Security | #1 Globally Trusted Cyber Security News Platform https://gbhackers.com/category/malware/ 32 32 New Android Malware SpyAgent Taking Screenshots Of User’s Devices https://gbhackers.com/android-malware-spyagent-screenshots/ https://gbhackers.com/android-malware-spyagent-screenshots/#respond Mon, 11 Nov 2024 11:02:45 +0000 https://gbhackers.com/?p=114708 SpyAgent, a newly discovered Android malware, leverages OCR technology to extract cryptocurrency recovery phrases from screenshots stored on infected devices.  By stealthily capturing screenshots, the malware bypasses traditional security measures that rely on text-based detection, which allows it to efficiently identify and exfiltrate sensitive information, posing a significant threat to cryptocurrency users. Cybercriminals are employing […]

The post New Android Malware SpyAgent Taking Screenshots Of User’s Devices appeared first on GBHackers Security | #1 Globally Trusted Cyber Security News Platform.

]]>
https://gbhackers.com/android-malware-spyagent-screenshots/feed/ 0
HookBot Malware Use Overlay Attacks Impersonate As Popular Brands To Steal Data https://gbhackers.com/hookbot-malware-overlay-steals-data/ https://gbhackers.com/hookbot-malware-overlay-steals-data/#respond Wed, 06 Nov 2024 12:14:27 +0000 https://gbhackers.com/?p=114534 The HookBot malware family employs overlay attacks to trick users into revealing sensitive information by impersonating various brands and apps to gain trust. It also utilizes C2 servers to receive updates and evolve continuously.  A builder tool empowers threat actors to create custom HookBot apps as the malware is often distributed through Telegram, where it’s […]

The post HookBot Malware Use Overlay Attacks Impersonate As Popular Brands To Steal Data appeared first on GBHackers Security | #1 Globally Trusted Cyber Security News Platform.

]]>
https://gbhackers.com/hookbot-malware-overlay-steals-data/feed/ 0
ToxicPanda Banking Malware Attacking Banking Users To Steal Logins https://gbhackers.com/toxicpanda-banking-malware-attack/ https://gbhackers.com/toxicpanda-banking-malware-attack/#respond Wed, 06 Nov 2024 12:11:04 +0000 https://gbhackers.com/?p=114510 Recent research has uncovered a new strain of malware developed for Android devices, initially misidentified as TgToxic.  Despite sharing some bot command similarities, this malware, now dubbed ToxicPanda, exhibits significant code divergence from its original source. It lacks key TgToxic capabilities and possesses placeholder commands without functional implementation.  The malware leverages Remote Access capabilities to […]

The post ToxicPanda Banking Malware Attacking Banking Users To Steal Logins appeared first on GBHackers Security | #1 Globally Trusted Cyber Security News Platform.

]]>
https://gbhackers.com/toxicpanda-banking-malware-attack/feed/ 0
APT36 Hackers Attacking Windows Deevices With ElizaRAT https://gbhackers.com/apt36-elizarat-windows-attacks/ https://gbhackers.com/apt36-elizarat-windows-attacks/#respond Tue, 05 Nov 2024 10:33:08 +0000 https://gbhackers.com/?p=114503 APT36, a sophisticated threat actor, has been actively targeting Indian entities with advanced malware like ElizaRAT, which is designed for espionage. It leverages cloud-based services for covert communication and data exfiltration.  Recent campaigns have seen significant enhancements in ElizaRAT’s evasion techniques, making it a potent tool for persistent attacks. The integration of ApoloStealer into the […]

The post APT36 Hackers Attacking Windows Deevices With ElizaRAT appeared first on GBHackers Security | #1 Globally Trusted Cyber Security News Platform.

]]>
https://gbhackers.com/apt36-elizarat-windows-attacks/feed/ 0
SYS01 InfoStealer Malware Attacking Meta Business Page To Steal Logins https://gbhackers.com/sys01-infostealer-meta-attack/ https://gbhackers.com/sys01-infostealer-meta-attack/#respond Mon, 04 Nov 2024 12:09:55 +0000 https://gbhackers.com/?p=114423 The ongoing Meta malvertising campaign, active for over a month, employs an evolving strategy to distribute the SYS01 InfoStealer through ElectronJs applications disguised as legitimate software like video editors, productivity tools, and streaming services.  The campaign leverages nearly a hundred malicious domains for distribution and C2 operations, targeting a global audience, especially males aged 45 […]

The post SYS01 InfoStealer Malware Attacking Meta Business Page To Steal Logins appeared first on GBHackers Security | #1 Globally Trusted Cyber Security News Platform.

]]>
https://gbhackers.com/sys01-infostealer-meta-attack/feed/ 0
Russian Hackers Attacking Ukraine Military With Malware Via Telegram https://gbhackers.com/russian-malware-attack-telegram/ https://gbhackers.com/russian-malware-attack-telegram/#respond Mon, 04 Nov 2024 11:53:34 +0000 https://gbhackers.com/?p=114257 Researchers discovered a Russian-linked threat actor, UNC5812, utilizing a Telegram persona named “Civil Defense. ” This persona has been distributing Windows and Android malware disguised as legitimate software designed to aid potential conscripts in Ukraine.  Once installed, these malicious apps silently deploy additional malware, including SUNSPINNER, while engaging in influence operations to undermine Ukrainian mobilization […]

The post Russian Hackers Attacking Ukraine Military With Malware Via Telegram appeared first on GBHackers Security | #1 Globally Trusted Cyber Security News Platform.

]]>
https://gbhackers.com/russian-malware-attack-telegram/feed/ 0
LightSpy iOS Malware Enhanced with 28 New Destructive Plugins https://gbhackers.com/lightspy-ios-malware-upgrade/ https://gbhackers.com/lightspy-ios-malware-upgrade/#respond Fri, 01 Nov 2024 09:26:01 +0000 https://gbhackers.com/?p=114376 The LightSpy threat actor exploited publicly available vulnerabilities and jailbreak kits to compromise iOS devices. The malware’s core binaries were even signed with the same certificate used in jailbreak kits, indicating deep integration. The C2 servers, active until October 26, 2022, hosted outdated malware, possibly for demonstration purposes but not as MaaS. The iOS and […]

The post LightSpy iOS Malware Enhanced with 28 New Destructive Plugins appeared first on GBHackers Security | #1 Globally Trusted Cyber Security News Platform.

]]>
https://gbhackers.com/lightspy-ios-malware-upgrade/feed/ 0
New PySilon RAT Abusing Discord Platform to Maintain Persistence https://gbhackers.com/new-pysilon-rat/ https://gbhackers.com/new-pysilon-rat/#respond Wed, 30 Oct 2024 09:02:35 +0000 https://gbhackers.com/?p=114357 Cybersecurity experts have identified a new Remote Access Trojan (RAT) named PySilon. This Trojan exploits the popular social platform Discord to maintain persistence on infected systems. Discord, known for its real-time communication features, has become a hub for various communities beyond its gaming origins. However, its API capabilities have also made it a target for […]

The post New PySilon RAT Abusing Discord Platform to Maintain Persistence appeared first on GBHackers Security | #1 Globally Trusted Cyber Security News Platform.

]]>
https://gbhackers.com/new-pysilon-rat/feed/ 0
Notorious WrnRAT Delivered Mimic As Gambling Games https://gbhackers.com/wrnrat-gambling-malware/ https://gbhackers.com/wrnrat-gambling-malware/#respond Tue, 29 Oct 2024 13:15:55 +0000 https://gbhackers.com/?p=114228 WrnRAT is a new malware attack that cybercriminals have deployed by using popular gambling games like Badugi, Go-Stop, and Hold’em to disguise itself as a malicious program.  The attackers created a fraudulent gambling website that, when accessed, prompts users to download a game launcher. Instead of initiating the game, the launcher installs the malicious WrnRAT […]

The post Notorious WrnRAT Delivered Mimic As Gambling Games appeared first on GBHackers Security | #1 Globally Trusted Cyber Security News Platform.

]]>
https://gbhackers.com/wrnrat-gambling-malware/feed/ 0
RedLine and META Infostealers Infrastructure Seized by Authorities https://gbhackers.com/redline-and-meta-infostealers-seized/ https://gbhackers.com/redline-and-meta-infostealers-seized/#respond Tue, 29 Oct 2024 11:34:58 +0000 https://gbhackers.com/?p=114307 An international coalition led by the U.S. Department of Justice has dismantled the infrastructure behind the notorious RedLine and META infostealers. These malware variants have plagued millions of computers worldwide, stealing sensitive information and facilitating further cybercriminal activities. Operation Magnus was a joint effort involving the US Department of Justice, FBI, Naval Criminal Investigative Service, […]

The post RedLine and META Infostealers Infrastructure Seized by Authorities appeared first on GBHackers Security | #1 Globally Trusted Cyber Security News Platform.

]]>
https://gbhackers.com/redline-and-meta-infostealers-seized/feed/ 0