Tag: C2 Servers

Android Malware Wpeeper Uses Compromised WordPress Sites to Hide C2 Servers
News

Android Malware Wpeeper Uses Compromised WordPress Sites to Hide C2 Servers

Researchers studying cybersecurity have uncovered a yet unreported malware that targets Android smartphones and evades detection by using hacked WordPress websites as relays for its real command-and-control (C2) servers. Code-named Wpeeper, the malware is an ELF binary that uses HTTPS to encrypt its C2 communications. According to experts from the QiAnXin XLab team, Wpeeper is a standard backdoor Trojan for Android systems that supports tasks including gathering sensitive device data, managing files and directories, uploading and downloading, and carrying out commands. The APK file serves as a covert backdoor delivery mechanism for the ELF code, which is embedded in a repackaged application that seems to be the UPtodown App Store app read more Android Malware Wpeeper Uses Comprom...