Tag: Telegram bots

ShadowSilk Hits 35 Organizations in Central Asia and APAC Using Telegram Bots
News

ShadowSilk Hits 35 Organizations in Central Asia and APAC Using Telegram Bots

A new wave of attacks against Central Asian and Asia-Pacific (APAC) government entities has been linked to a threat activity cluster called ShadowSilk. Group-IB reports that about three dozen victims have been found, with the majority of the intrusions being intended to exfiltrate data. The hacker group's infrastructure and toolkit are similar to those used by threat actors known as YoroTrooper, SturgeonPhisher, and Silent Lynx. Campaign victims in Uzbekistan, Kyrgyzstan, Myanmar, Tajikistan, Pakistan, and Turkmenistan are mostly government agencies, with smaller numbers of victims coming from the energy, manufacturing, retail, and transportation industries. According to researchers Nikita Rostovcev and Sergei Turner, the operation is conducted by a multilingual crew, with Chines...
Massive SMS stealer campaign infects Android devices in 113 countries
News

Massive SMS stealer campaign infects Android devices in 113 countries

Thousands of Telegram bots are being used in a malicious campaign that targets Android smartphones globally in an attempt to infect devices with malware that steals SMS messages and obtain one-time 2FA passwords (OTPs) for more than 600 services. Researchers from Zimperium found out about the operation and have been following it since February 2022. They claim to have discovered at least 107,000 unique malware samples connected to the operation. Financial gain is the driving force behind the hackers' use of compromised devices as relays for authentication and anonymization. Malvertising or Telegram bots that automate conversations with the victim are the two main ways that the SMS stealer is disseminated read more about Massive SMS stealer campaign infects Android devices in 113 cou...