Thread Rating:
  • 0 Vote(s) - 0 Average
  • 1
  • 2
  • 3
  • 4
  • 5
Google Uncovers more Details on Spanish-made Spyware that Targeted UAE Users
#1
Information 
Quote:[Image: Google-learns-more-about-Variston-spyware-02-scaled.jpg]

It looks like Google is inching close to finding the hackers that used Spyware made in Spain to target UAE users with Variston’s tools.

Google discovered a new spyware tool causing havoc on Android and Chrome systems in November 2022, which they later realized was called Variston. While developers based in Spain made the spyware software, investigators have uncovered that it’s mostly being used by hackers in the United Arab Emirates to target users.

[Image: Google-learns-more-about-Variston-spyware-02-scaled.jpg]

Google’s Threat Analysis Group (TAG) presented a report on its findings yesterday. Feel free to read through it, but one part caught my attention. One of the tracked campaigns by the hackers is called “Your missed parcel included 0-days (CVE-2022-42856; CVE-2022-4135)”. While it states that it mostly targeted users in the UAE, I’m here to let them know it’s happening elsewhere too, namely in South Africa.

Many of us have seen messages like this. I’ve just been ignoring them, as I know notifications about missed parcels are scams. How the campaign works is that you receive that message with a link to where you can see the progress of your parcel. If you happen to click on it, you head to a site that contains the Variston spyware.

From there, it’s on your device and browser, watching you enter your accounts and capturing information. The other campaign targets Samsung browsers, which sends you tons of fake notifications.

You can also read more about the spyware details from Amnesty International’s Security Lab, which is the group responsible for discovering the hacker activities. While they haven’t caught the culprits yet, they at least have an idea of how many there are and where they are located. 

Here’s hoping that’s enough information to eventually catch and stop them.  Until then, make sure you don’t open suspicious links. I suppose I should do my part and let Google know it’s happening here, too.
...
Continue Reading
Reply


Forum Jump:


Users browsing this thread: 1 Guest(s)
[-]
Welcome
You have to register before you can post on our site.

Username/Email:


Password:





[-]
Recent Posts
Thunderbird Supernova 115.10.2
Thunderbird Supern...harlan4096 — 15:31
VirtualBox 7.0.18 Build 162988
Changes in 7.0.168...harlan4096 — 15:25
Emsisoft Anti-Malware 2024.5.0.12426
Changes in 2024.5....harlan4096 — 15:25
Microsoft introduces Passkeys support fo...
Microsoft is celeb...harlan4096 — 15:08
Mozilla blames recaptcha issue in Firefo...
Mozilla confirmed ...harlan4096 — 15:04

[-]
Birthdays
Today's Birthdays
avatar (42)nikitaxople
Upcoming Birthdays
avatar (26)akiratoriyama
avatar (46)Jerrycix
avatar (38)awedoli
avatar (80)WinRARHowTo
avatar (36)owysykan
avatar (47)beautgok
avatar (37)axuben
avatar (43)talsmanthago
avatar (29)mocetor
avatar (44)piomaibhaict
avatar (49)kingbfef
avatar (36)izenesiq
avatar (38)ihijudu
avatar (43)tiojusop
avatar (40)Damiennug
avatar (38)acoraxe
avatar (47)contjrat
avatar (39)axylisyb
avatar (42)tukrublape
avatar (39)iruqi
avatar (40)saitetib
avatar (34)ypasodiny
avatar (37)omapek
avatar (46)Geraldtuh
avatar (42)knigiJow
avatar (44)1stOnecal
avatar (48)Mirzojap
avatar (34)idilysaju
avatar (43)xclubDum
avatar (39)Stewartanilm
avatar (38)GregoryRog
avatar (43)mediumog
avatar (38)odukoromu
avatar (44)Joanna4589

[-]
Online Staff
There are no staff members currently online.

>