Arid Viper Launches Mobile Espionage Campaign with AridSpy Malware
The mobile espionage effort that uses trojanized Android apps to distribute a spyware strain called AridSpy has been linked to the threat actor known as Arid Viper.
According to a report released today by ESET researcher Lukáš Štefanko, "the malware is distributed through dedicated websites impersonating various messaging apps, a job opportunity app, and a Palestinian Civil Registry app." "Often these are existing applications that had been trojanized by the addition of AridSpy's malicious code."
Since 2022, there have reportedly been up to five campaigns involved in the activity; Zimperium and 360 Beacon Labs have documented previous iterations of AridSpy. Of the five campaigns, three are still running read more Arid Viper Launches Mobile Espionage Campaign with AridSpy Malware.
...

