home.social

#crimeware — Public Fediverse posts

Live and recent posts from across the Fediverse tagged #crimeware, aggregated by home.social.

  1. NGate Android malware relays NFC traffic to steal cash

    ESET researchers uncovered a crimeware campaign targeting bank customers in Czechia. The NGate Android malware can relay NFC data from victims' payment cards to attackers' devices, enabling unauthorized ATM withdrawals. It's the first time this capability has been observed in the wild. The campaign evolved from using phishing PWAs and WebAPKs to deploying NGate, which tricks victims into providing banking details and NFC card data.

    Pulse ID: 66c714a4bc49c857b451230c
    Pulse Link: otx.alienvault.com/pulse/66c71
    Pulse Author: AlienVault
    Created: 2024-08-22 10:36:19

    Be advised, this data is unverified and should be considered preliminary. Always do further verification.

    #APK #Android #Bank #CrimeWare #CyberSecurity #ESET #InfoSec #Malware #OTX #OpenThreatExchange #Phishing #bot #AlienVault

  2. Crimeware report: Acrid, ScarletStealer and Sys01 stealers

    This analysis delves into three distinct stealers: Acrid, ScarletStealer, and Sys01. Acrid is a new stealer found in December, employing the 'Heaven's Gate' technique to bypass security controls. ScarletStealer downloads additional executables and Chrome extensions to facilitate data theft. Sys01, also known as 'Album Stealer' or 'S1deload Stealer,' tricks users into downloading malicious ZIP archives disguised as adult videos, ultimately executing a payload called 'Newb' with backdoor capabilities. The report underscores the persistent threat posed by stealers and the need for robust cybersecurity measures.

    Pulse ID: 664e1063305948612a89e123
    Pulse Link: otx.alienvault.com/pulse/664e1
    Pulse Author: AlienVault
    Created: 2024-05-22 15:33:55

    Be advised, this data is unverified and should be considered preliminary. Always do further verification.

    #BackDoor #Chrome #ChromeExtension #CrimeWare #CyberSecurity #DataTheft #InfoSec #OTX #OpenThreatExchange #ZIP #bot #AlienVault

  3. Kaspersky crimeware report: FakeSG, Akira and AMOS

    Kaspersky has published a series of reports on new cross-platform ransomware, malware distribution campaigns and the AMOS stealer, which it describes as the “FakeSG” campaign.

    Pulse ID: 657b34f330a288e473f448c0
    Pulse Link: otx.alienvault.com/pulse/657b3
    Pulse Author: AlienVault
    Created: 2023-12-14 17:01:39

    Be advised, this data is unverified and should be considered preliminary. Always do further verification.

    #OTX #OpenThreatExchange #InfoSec #bot #CyberSecurity #RansomWare #Malware #Kaspersky #CrimeWare #AlienVault

  4. A new variant of the #RansomExx #ransomware has been rewritten in the #Rust programming language, joining a growing trend of #crimeware developers switching to the language for lower AV detection rates: securityintelligence.com/posts | #Xforce #cybercrime #Malware

  5. A new variant of the #RansomExx #ransomware has been rewritten in the #Rust programming language, joining a growing trend of #crimeware developers switching to the language for lower AV detection rates: securityintelligence.com/posts | #Xforce #cybercrime #Malware

  6. A new variant of the #RansomExx #ransomware has been rewritten in the #Rust programming language, joining a growing trend of #crimeware developers switching to the language for lower AV detection rates: securityintelligence.com/posts | #Xforce #cybercrime #Malware

  7. A new variant of the #RansomExx #ransomware has been rewritten in the #Rust programming language, joining a growing trend of #crimeware developers switching to the language for lower AV detection rates: securityintelligence.com/posts | #Xforce #cybercrime #Malware

  8. #Lazarus group has been widening its activity using the #DTrack #backdoor. Initially discovered in 2019, it's used in various attacks, allowing criminals to perform different actions on victim hosts. Watch for the IOCs: securelist.com/dtrack-targetin | #cybercrime #malware #crimeware

  9. #Lazarus group has been widening its activity using the #DTrack #backdoor. Initially discovered in 2019, it's used in various attacks, allowing criminals to perform different actions on victim hosts. Watch for the IOCs: securelist.com/dtrack-targetin | #cybercrime #malware #crimeware

  10. #Lazarus group has been widening its activity using the #DTrack #backdoor. Initially discovered in 2019, it's used in various attacks, allowing criminals to perform different actions on victim hosts. Watch for the IOCs: securelist.com/dtrack-targetin | #cybercrime #malware #crimeware