article thumbnail

China-linked actor’s malware DeepData exploits FortiClient VPN zero-day

Security Affairs

Chinese threat actors use custom post-exploitation toolkit ‘DeepData’ to exploit FortiClient VPN zero-day and steal credentials. Volexity researchers discovered a vulnerability in Fortinet’s Windows VPN client that China-linked threat actor BrazenBamboo abused in their DEEPDATA malware. ” reads the advisory.

VPN 117
article thumbnail

SandStrike Spyware Uses VPN App to Infect Android Devices

Heimadal Security

A newly discovered spyware is affecting more and more Android devices. Threat actors have become quite keen on SandStrike, spyware that they deliver via a malicious VPN app. The post SandStrike Spyware Uses VPN App to Infect Android Devices appeared first on Heimdal Security Blog. How SandStrike Works?

Spyware 124
Insiders

Sign Up for our Newsletter

This site is protected by reCAPTCHA and the Google Privacy Policy and Terms of Service apply.

article thumbnail

Spyware posing as VPN apps – Week in security with Tony Anscombe

We Live Security

The post Spyware posing as VPN apps – Week in security with Tony Anscombe appeared first on WeLiveSecurity. The Bahamut APT group distributes at least eight malicious apps that pilfer victims' data and monitor their messages and conversations.

Spyware 121
article thumbnail

Espionage campaign loads VPN spyware on Android devices via social media

CSO Magazine

A new espionage campaign, dubbed SandStrike, has been detected using malicious VPN apps to load spyware on Android devices, cybersecurity company Kaspersky reports. To read this article in full, please click here

Spyware 117
article thumbnail

Malicious VPN Installers Used to Infect Devices with Spyware

Heimadal Security

The VPN market has grown considerably in the last few years due to the increasing popularity of VPN technologies. However, corrupted VPN installers have been used by threat actors to deliver a piece of spyware called EyeSpy, as part of a malware campaign that started in May 2022.

Spyware 97
article thumbnail

Uyghurs Targeted With Spyware, Courtesy of PRC

Dark Reading

Chinese government employs spyware to detect so-called "pre-crimes" including using a VPN, religious apps, or WhatsApp, new analysis reveals.

Spyware 129
article thumbnail

Google Chrome AI extensions deliver info-stealing malware in broad attack

Malwarebytes

Analyzed by researchers at Extension Total, the cybercriminal campaign has managed to take over the accounts of at least 36 Google Chrome extensions that provide AI and VPN services. million people.

Malware 125