ClayRat, a rapidly developing Android spyware operation, has used a combination of lookalike phishing websites and Telegram channels to target consumers in Russia by pretending to be well-known apps like YouTube, WhatsApp, Google Photos, and TikTok in order to trick them into installing them.
In a report shared with The Hacker News, Zimperium researcher Vishnu Pratapagiri stated that once the spyware is activated, it can exfiltrate SMS messages, call logs, notifications, and device information; take pictures with the front camera; and even send SMS messages or make calls straight from the victim’s device.
Additionally, the virus is made to spread by sending malicious URLs to all of the contacts in the victim’s phone book. This suggests that the attackers are using aggressive techniques to use infected devices as a distribution channel.
With each iteration adding new levels of obfuscation to evade detection efforts and keep ahead of security defenses, the mobile security company claimed to have spotted at least 600 samples and 50 droppers in the last ninety days read more about New ClayRat Spyware Targets Android Users via Fake WhatsApp and TikTok Apps.
Get up to date on the latest cybersecurity news and enhance your knowledge of cybersecurity with our thorough coverage of the dangers, breaches, and solutions.
