• Menu
  • Skip to main content
  • Skip to primary sidebar

The Cyber Security News

Latest Cyber Security News

Header Right

  • Latest News
  • Vulnerabilities
  • Cloud Services
new android malware targeting us, canadian users with covid 19 lures

New Android Malware Targeting US, Canadian Users with COVID-19 Lures

You are here: Home / General Cyber Security News / New Android Malware Targeting US, Canadian Users with COVID-19 Lures
September 23, 2021

An “insidious” new SMS smishing malware has been located focusing on Android mobile people in the U.S. and Canada as aspect of a new marketing campaign that utilizes SMS textual content concept lures linked to COVID-19 polices and vaccine info in an endeavor to steal personalized and economic knowledge.

Proofpoint’s messaging security subsidiary Cloudmark coined the rising malware “TangleBot.”

“The malware has been presented the moniker TangleBot for the reason that of its quite a few concentrations of obfuscation and management in excess of a myriad of entangled gadget features, including contacts, SMS and phone capabilities, simply call logs, internet access, and digital camera and microphone,” the scientists claimed. Aside from abilities to acquire delicate data, the malware is engineered to management machine interaction with banking or monetary apps using overlay screens and plunder account qualifications from money pursuits initiated on the phones.

✔ Approved Seller From Our Partners
Mullvad VPN Discount

Protect your privacy by Mullvad VPN. Mullvad VPN is one of the famous brands in the security and privacy world. With Mullvad VPN you will not even be asked for your email address. No log policy, no data from you will be saved. Get your license key now from the official distributor of Mullvad with discount: SerialCart® (Limited Offer).

➤ Get Mullvad VPN with 12% Discount


Android Malware

The attacks by themselves originate from SMS messages that assert to be “new restrictions about COVID-19” or affirmation for an “appointment for the 3rd [vaccine] dose,” urging users to click on on an accompanying connection that, when visited, notifies the target that their Adobe Flash player is out-of-date and ought to be current. Opting to update the software program effects in the installation of the TangleBot malware on the Android machine.

Prevent Ransomware Attacks

In the following period, TangleBot is granted huge-ranging permissions to obtain contacts, SMS, get in touch with logs, internet, camera and microphone, and GPS, enabling the operators to intercept phone calls send out and receive text messages, document the digicam, screen, or microphone audio or stream them immediately to the attacker, turning it into total-fledged spy ware.

Android Malware

“Harvesting of individual info and credentials in this way is incredibly troublesome for mobile buyers simply because there is a escalating marketplace on the dark web for in depth individual and account facts,” the scientists reported. “Even if the user discovers the TangleBot malware and it is in a position to eliminate it, the attacker could not use the stolen information for some time period of time, rendering the target oblivious of the theft.”

Located this article attention-grabbing? Abide by THN on Facebook, Twitter  and LinkedIn to browse additional exceptional content material we write-up.


Some pieces of this article are sourced from:
thehackernews.com

Previous Post: «microsoft exposes bulletprooflink 'phishing as a service' criminal enterprise Microsoft exposes BulletProofLink ‘phishing as a service’ criminal enterprise
Next Post: 85% of UK’s Top Universities at Risk of Email Fraud Cyber Security News»

Reader Interactions

Leave a Reply Cancel reply

Your email address will not be published. Required fields are marked *

Primary Sidebar

Report This Article

Recent Posts

  • Zero-Click Agentic Browser Attack Can Delete Entire Google Drive Using Crafted Emails
  • Critical XXE Bug CVE-2025-66516 (CVSS 10.0) Hits Apache Tika, Requires Urgent Patch
  • Chinese Hackers Have Started Exploiting the Newly Disclosed React2Shell Vulnerability
  • Intellexa Leaks Reveal Zero-Days and Ads-Based Vector for Predator Spyware Delivery
  • “Getting to Yes”: An Anti-Sales Guide for MSPs
  • CISA Reports PRC Hackers Using BRICKSTORM for Long-Term Access in U.S. Systems
  • JPCERT Confirms Active Command Injection Attacks on Array AG Gateways
  • Silver Fox Uses Fake Microsoft Teams Installer to Spread ValleyRAT Malware in China
  • ThreatsDay Bulletin: Wi-Fi Hack, npm Worm, DeFi Theft, Phishing Blasts— and 15 More Stories
  • 5 Threats That Reshaped Web Security This Year [2025]

Copyright © TheCyberSecurity.News, All Rights Reserved.