CYFIRMA Research

CYFIRMA Research - Episode 026: APT Bahamut Targets Individuals with Android Malware Using Spear Messaging


Listen Later

The team at CYFIRMA recently obtained advanced Android malware targeting individuals in the South Asia region.

The suspicious Android malware is a dummy chatting app named SafeChat that was initially disguised as a harmless chatting app called Coverlm on WhatsApp.

The user interface of this app is designed in such a convincing manner that it successfully deceives users into believing it to be authentic.

Our initial technical analyses revealed that APT Bahamut is behind the attack, we also found footprints of tactics used by DoNot APT in the suspicious app belonging to APT Bahamut. The malware exploits Android Libraries to extract sensitive data. Our research suggest that this malware serves the interests of one nation state government.


Link to research Report:  APT Bahamut Targets Individuals with Android Malware Using Spear Messaging - CYFIRMA

#CyberSecurity #AndroidThreats #StaySafe #Androidmalware #APTBahamut #DoNotAPT, #sensitivedata #Indiangovernment #ETLM #CYFIRMAResearch #ThreatIntelligence #CyberSecurity #GooglePlayStore

https://www.cyfirma.com/

...more
View all episodesView all episodes
Download on the App Store

CYFIRMA ResearchBy CYFIRMA