• Latest
  • Trending
Mobile RAT for Android available on Darknet forums – BankInfoSecurity.com

Mobile RAT for Android available on Darknet forums – BankInfoSecurity.com

14.01.2021
Bumble IPO filing warns Apple’s privacy changes could harm its business – CNBC

Bumble IPO filing warns Apple’s privacy changes could harm its business – CNBC

16.01.2021
Minka Kelly looks chic in an olive jumpsuit as she goes shopping in Los Angeles

Minka Kelly looks chic in an olive jumpsuit as she goes shopping in Los Angeles

16.01.2021
Armie Hammer calls online attacks ‘bogus’ and will always leave Jennifer Lopez rom-com – Los Angeles Times

Armie Hammer calls online attacks ‘bogus’ and will always leave Jennifer Lopez rom-com – Los Angeles Times

16.01.2021
In New Jersey, smokers can get the Covid vaccine – The New York Times

In New Jersey, smokers can get the Covid vaccine – The New York Times

16.01.2021
Majority of investors say higher rates pose greatest threat to stocks and risky assets, BofA – MarketWatch survey finds

Majority of investors say higher rates pose greatest threat to stocks and risky assets, BofA – MarketWatch survey finds

16.01.2021
5 reasons not to buy the Samsung Galaxy S21 or S21 + – Phandroid – Android news

5 reasons not to buy the Samsung Galaxy S21 or S21 + – Phandroid – Android news

16.01.2021
Call My Agent: French TV hit that viewers and actors love – the Guardian

Call My Agent: French TV hit that viewers and actors love – the Guardian

16.01.2021
"WandaVision" is a hauntingly bizarre marriage between classic television and the Marvel superhero movies – Living Room

"WandaVision" is a hauntingly bizarre marriage between classic television and the Marvel superhero movies – Living Room

16.01.2021
Big bitcoin payments made to far-right groups before US Capitol attack: report – KTLA

Big bitcoin payments made to far-right groups before US Capitol attack: report – KTLA

16.01.2021
Xiaomi joins Huawei on US blacklist – Thurrott.com – Thurrott.com

Xiaomi joins Huawei on US blacklist – Thurrott.com – Thurrott.com

16.01.2021
Matt Damon quietly throws himself in Sydney with his family on a private jet

Matt Damon quietly throws himself in Sydney with his family on a private jet

16.01.2021

From Ella to Beyoncé: new museum celebrates African-American music – Christian Science Monitor

16.01.2021
Saturday, January 16, 2021
  • World
  • Economics
  • Sport
    • Basketball
    • Football
    • Nfl
    • Golf
    • F1
    • UFC
  • Technology
  • Culture
    • Arts
  • Media
    • Film
    • Celebs
    • TV
  • LifeStyle
    • Auto
  • Travel
OLTNEWS
  • World
  • Economics
  • Sport
    • Basketball
    • Football
    • Nfl
    • Golf
    • F1
    • UFC
  • Technology
  • Culture
    • Arts
  • Media
    • Film
    • Celebs
    • TV
  • LifeStyle
    • Auto
  • Travel
OLTNEWS
No Result
View All Result

Home » Technology » Mobile RAT for Android available on Darknet forums – BankInfoSecurity.com

Mobile RAT for Android available on Darknet forums – BankInfoSecurity.com

2 days ago
in Technology
0
0
SHARES
Share on WhatsappShare on Facebook

Related posts

Bumble IPO filing warns Apple’s privacy changes could harm its business – CNBC

Bumble IPO filing warns Apple’s privacy changes could harm its business – CNBC

16.01.2021
5 reasons not to buy the Samsung Galaxy S21 or S21 + – Phandroid – Android news

5 reasons not to buy the Samsung Galaxy S21 or S21 + – Phandroid – Android news

16.01.2021

Cybercrime, fraud and cybercrime management, fraud risk management

Researchers: ‘Rogue’ steals data, supplies other malware

Akshaya Asokan (asokan_akshaya) •
January 13, 2021

A clandestine advertisement for the “Rogue” mobile remote access Trojan (Source: Check Point Research)

A recently identified mobile remote access Trojan, dubbed “Rogue,” which exploits Google’s Firebase development platform, targets Android devices to exfiltrate personal data and may spread other malware, according to the report. security company Check Point Research.

See also: Roundtable: cybersecurity over the next 4 years

The Rogue RAT is being offered for sale or rental on darknet forums, Check Point says in its new report. Once a hacker uses the Trojan, presented to victims as a legitimate application, to infect a device, the malware can exfiltrate data, such as photos, location information, contacts, and messages. It can also download additional malicious payloads, including mobile ransomware.

“When Rogue obtains all the required permissions on the targeted device, he hides his icon from the device user to ensure that it won’t be easy to get rid of. If all the required permissions are not granted, it will repeatedly ask the user to grant them, ”the Check Point report notes. “If the user attempts to revoke the administrator permission, an on-screen message designed to strike terror into the user’s heart appears:” Are you sure you erase all data? “”

The Rogue RAT takes advantage of a targeted device’s Android accessibility services, which are designed to help users with disabilities, according to the report. These services usually run in the background, but can access apps and other components of an Android device. By accessing these services, hackers can take control of a device without the victim’s knowledge, the report notes.

The developer behind Rogue is offering to rent the malware for as little as $ 29 per month, according to the Check Point research report. Lifetime access to mobile RAT is available for $ 189.

Abusing Firebase

The report notes that the Rogue RAT uses Google’s Firebase platform to target and compromise as many Android devices as possible. Firebase, supported by Google Cloud Platform, is designed to help developers scale their applications.

The malware uses Firebase features, such as Cloud Messaging real-time database and Cloud Firestore, as part of the command and control infrastructure to download data from infected devices, the researchers determined. Rogue also uses Firebase to conceal its operations, allowing the malware to impersonate a legitimate Google service application.

Malware authors

Check Point Research Says Rogue Was Designed By A Darknet Developer Called “Triangulum”, Who Developed The Trojan By Collaborating With Another Threat Player Named “HexaGoN Dev” Who Specialized In Operating System Malware Android. The duo have previously collaborated to design other variants of Android malware, including cryptominers, keyloggers and mobile phone-to-phone RATs, the report says.

The two threat actors have been selling Rogue since March, researchers said.

Triangulum, which has been active since 2017, started out as an amateur by joining hacking forums, the report notes.

“We have evidence of [Triangulum] be active in recent months. This includes responses in his sales feeds, daily check-ins and random chatter in various parts of his home darknet forums, ”Yaniv Balmas, head of cyber research at Check Point Software Technologies, told Information Security Media Group.

Check Point researchers note that Triangulum appears to have used the source code of two other Android RATs, called Cosmos and Hawkshaw, to create the Rogue malware.

Android malware

In recent months, other hackers have used Trojan applications to target Android devices.

In November, Kaspersky researchers discovered that a banking Trojan targeting Android devices had the ability to spy on more than 150 apps, including those from banks, cryptocurrency exchanges, and fintech companies. in order to collect identifying information and other data (see: Banking Trojan can spy on over 150 financial applications).

In September, Kaspersky found the source code for the Cerberus Android mobile banking Trojan in Russian circulating in underground forums. The release of this code resulted in an increase in attacks as well as malware updates by other underground developers (see: Attacks Using Cerberus Banking Trojan Surge).



Share this:

  • Twitter
  • Facebook

Like this:

Like Loading...

Related

Previous Post

Are the Portland Timbers strong enough to compete for the Concacaf Champions League? | Extratime – MLSsoccer.com

Next Post

Pandemic could lead to major oil supply crisis – OilPrice.com

Related Posts

Bumble IPO filing warns Apple’s privacy changes could harm its business – CNBC
Technology

Bumble IPO filing warns Apple’s privacy changes could harm its business – CNBC

16.01.2021
0

Founder and CEO of Bumble Whitney WolfeVivien Killilea | Entertainment Getty Images | Getty ImagesOnline dating app company Bumble said...

Read more
5 reasons not to buy the Samsung Galaxy S21 or S21 + – Phandroid – Android news

5 reasons not to buy the Samsung Galaxy S21 or S21 + – Phandroid – Android news

16.01.2021
Xiaomi joins Huawei on US blacklist – Thurrott.com – Thurrott.com

Xiaomi joins Huawei on US blacklist – Thurrott.com – Thurrott.com

16.01.2021

Save on Sony, Samsung, LG and more – Sports Grind Entertainment

15.01.2021

Backed by a booming tech sector, Seattle surpasses Atlanta in claiming 10th largest regional economy – GeekWire

15.01.2021

Apple removes feature that allows its apps to bypass macOS security tools

15.01.2021
Load More
Next Post
Pandemic could lead to major oil supply crisis – OilPrice.com

Pandemic could lead to major oil supply crisis - OilPrice.com

Recent Posts

  • Bumble IPO filing warns Apple’s privacy changes could harm its business – CNBC
  • Minka Kelly looks chic in an olive jumpsuit as she goes shopping in Los Angeles
  • Armie Hammer calls online attacks ‘bogus’ and will always leave Jennifer Lopez rom-com – Los Angeles Times
  • In New Jersey, smokers can get the Covid vaccine – The New York Times
  • Majority of investors say higher rates pose greatest threat to stocks and risky assets, BofA – MarketWatch survey finds

Archives

  • January 2021
  • December 2020
  • November 2020
  • October 2020
  • September 2020
  • August 2020
  • July 2020
  • June 2020
  • May 2020
  • April 2020
  • March 2020
  • EN

© 2020

No Result
View All Result
  • World
  • Economics
  • Sport
    • Basketball
    • Football
    • Nfl
    • Golf
    • F1
    • UFC
  • Technology
  • Culture
    • Arts
  • Media
    • Film
    • Celebs
    • TV
  • LifeStyle
    • Auto
  • Travel

© 2020

This website uses cookies. By continuing to use this website you are giving consent to cookies being used. Visit our Privacy and Cookie Policy.
%d bloggers like this: