Gefälschte Telegram-App spioniert unter Android

IT-Forscher von Eset haben eine gefälschte Telegram-App aufgespürt, die ihre Opfer umfassend ausspioniert. Sie wird jedoch außerhalb von Google Play verteilt.

heise online
Telegram App dient StrongPity-Hackern als Überwachungssoftware

Getarnt als mobile Anwendung der Videochat-Plattform Shagle greift eine manipulierte Telegram-App brisante Informationen für StrongPity ab.

Tarnkappe.info
StrongPity APT spreads backdoored Android Telegram app via fake Shagle site

The StrongPity APT group targeted Android users with a trojanized version of the Telegram app served through a website impersonating a video chat service called Shagle. ESET researchers reported that StrongPity APT group targeted Android users with a trojanized version of the Telegram app. The campaign has been active since November 2021, threat actors served the malicious app […]

Security Affairs
Insightful analysis by @ESETresearch on a recent espionage campaign by #StrongPity APT, including in-depth description of the modules and their functionality of the malicious Android app: https://www.welivesecurity.com/2023/01/10/strongpity-espionage-campaign-targeting-android-users/
StrongPity espionage campaign targeting Android users | WeLiveSecurity

ESET researchers uncover an active StrongPity campaign that spreads a trojanized version of the Android Telegram app posing as the Shagle video chat app.

WeLiveSecurity
*News* @ESETresearch identified an active and likely targeted Android campaign attribute to #StrongPity APT group. Check out the WeLiveSecurity blog today: https://welivesecurity.com/2023/01/10/strongpity-espionage-campaign-targeting-android-users/
StrongPity espionage campaign targeting Android users | WeLiveSecurity

ESET researchers uncover an active StrongPity campaign that spreads a trojanized version of the Android Telegram app posing as the Shagle video chat app.

WeLiveSecurity
StrongPity APT Back with Kurdish-Aimed Watering Hole Attacks - The spy malware is being delivered via a complex infrastructure with multiple layers, in an effort... more: https://threatpost.com/strongpity-kurdish-watering-hole-attacks/157029/ #trojanizedapplications #malwareanalysis #cyberattacks #wateringhole #websecurity #bitdefender #strongpity #espionage #malware #spyware #turkey #kurds #syria #apt
StrongPity APT Back with Kurdish-Aimed Watering Hole Attacks

The spy malware is being delivered via a complex infrastructure with multiple layers, in an effort to avoid analysis.

Threatpost - English - Global - threatpost.com

PROMETHIUM extends global reach with StrongPity3 APT - By Warren Mercer, Paul Rascagneres and Vitor Ventura.

News summary
The threat actor behind StrongPi... more: http://feedproxy.google.com/~r/feedburner/Talos/~3/xyzMJRUu0qY/promethium-extends-with-strongpity3.html #strongpityv3 #ciscotalos #promethium #strongpity #talos #apt

PROMETHIUM extends global reach with StrongPity3 APT

A blog from the world class Intelligence Group, Talos, Cisco's Intelligence Group