Not all cybermercenaries are ninjas. Plenty are hella derpy (from Cooper Quintin's #DarkCaracal war story at #DEFCON31).

#Idea: Instead of naming malware cool names like #darkcaracal, we should name it stupid stuff like "whoopee cushion" or "rainbow dumbbells".

Why should we let the hackers have cool names for their stuff? (also, it would make court cases way funnier!)

#Cybersecurity #Malware #LatinAmerica #DarkCaracal: "In 2018, EFF along with researchers from Lookout Security published a report describing the Advanced Persistent Threat (APT) we dubbed "Dark Caracal." Now we have uncovered a new Dark Caracal campaign operating since March of 2022, with hundreds of infections across more than a dozen countries. In this report we will present evidence that the cyber mercenary group Dark Caracal is still active and continues to be focused on Latin America, as was reported last year. We have discovered that Dark Caracal, using the Bandook spyware, is currently infecting over 700 computers in Central and South America, primarily in The Dominican Republic and Venezuela."

https://www.eff.org/deeplinks/2023/02/uncle-sow-dark-caracal-latin-america

Uncle Sow: Dark Caracal in Latin America

In 2018, EFF along with researchers from Lookout Security published a report describing the Advanced Persistent Threat (APT) we dubbed "Dark Caracal." Now we have uncovered a new Dark Caracal campaign operating since March of 2022, with hundreds of infections across more than a dozen countries. In...

Electronic Frontier Foundation

Uncle Sow: Dark #Caracal in #LatinAmerica

Given #DarkCaracal ‘s history of working with national governments — such as Kazakhstan and Lebanon — on politically motivated campaigns, it is possible that the new campaign described below is also at the behest of a government actor, but without more insight into who the infected computers belong to, we cannot draw any conclusions as to the motivation of these attacks.

https://www.eff.org/deeplinks/2023/02/uncle-sow-dark-caracal-latin-america

Uncle Sow: Dark Caracal in Latin America

In 2018, EFF along with researchers from Lookout Security published a report describing the Advanced Persistent Threat (APT) we dubbed "Dark Caracal." Now we have uncovered a new Dark Caracal campaign operating since March of 2022, with hundreds of infections across more than a dozen countries. In...

Electronic Frontier Foundation
Digitally Signed Bandook Trojan Reemerges in Global Spy Campaign - A strain of a 13-year old backdoor Bandook trojan has been spotted in an espionage campaign. https://threatpost.com/digitally-signed-bandook-trojan-spy-campaign/161676/ #globalspycampaign #targetedcampaigns #validcertificate #maliciousmacros #malwareanalysis #waveofattacks #cyberattacks #darkcaracal #checkpoint #malware #privacy #bandook #breach #trojan
Digitally Signed Bandook Trojan Reemerges in Global Spy Campaign

A strain of the 13-year old backdoor Bandook trojan has been spotted in an espionage campaign.

Threatpost - English - Global - threatpost.com
Dark Caracal, a Lebanon's General Directorate of General Security (GDGS) cyber operation targeting mobile users https://info.lookout.com/rs/051-ESQ-475/images/Lookout_Dark-Caracal_srr_20180118_us_v.1.0.pdf (PDF) #DarkCaracal #malware https://t.co/QksvDzqzJj
Dark Caracal, a Lebanon's General Directorate of General
Security (GDGS) cyber operation targeting mobile users https://info.lookout.com/rs/051-ESQ-475/images/Lookout_Dark-Caracal_srr_20180118_us_v.1.0.pdf (PDF) #DarkCaracal #malware https://t.co/Eyio9Bp5c8
Organisierte Hacker sollen weltweit unter anderem Militär und Regierungen seit Jahren detailliert ausspionieren. Das passiert Sicherheitsforschern zufolge unter anderem auf Android-Geräten mit präparierten WhatsApp-Versionen. https://www.heise.de/security/meldung/Dark-Caracal-Grosse-Spionage-Kampagne-setzt-auf-manipulierten-WhatsApp-Messenger-3946585.html #APT #DarkCaracal #FinFisher #Pallas #Signal #Spionage #Threema #WhatsApp
Dark Caracal: Große Spionage-Kampagne setzt auf manipulierten WhatsApp-Messenger

Organisierte Hacker sollen weltweit unter anderem Militär und Regierungen seit Jahren detailliert ausspionieren. Das passiert Sicherheitsforschern zufolge unter anderem auf Android-Geräten mit präparierten WhatsApp-Versionen.