Pakistani APT Exploits YouTube Clones to Infect Android Devices

The APT36 hacking group, also known as Transparent Tribe, has been using fake YouTube apps to infect Android devices with their remote access trojan (RAT), CapraRAT. Once installed, the malware can collect data, record audio and video, and access sensitive information. APT36 primarily targets Indian defense and government entities, as well as individuals involved in Kashmir region affairs and human rights activism in Pakistan. The malicious apps are distributed outside of Google Play and request risky permissions during installation. Despite their weak operational security, APT36's continuous development of new apps allows them to consistently reach new potential victims.
- APT36 state hackers infect Android devices using YouTube app clones BleepingComputer
- CapraRAT Impersonates YouTube to Hijack Android Devices DARKReading
- Transparent Tribe Uses Fake YouTube Android Apps to Spread CapraRAT Malware The Hacker News
- Pakistani APT Uses YouTube-Mimicking RAT to Spy on Android Devices SecurityWeek
- Two fake Android apps need to be uninstalled now to ensure your Android phone is protected PhoneArena
- View Full Coverage on Google News
Reading Insights
0
1
2 min
vs 3 min read
79%
457 → 98 words
Want the full story? Read the original article
Read on BleepingComputer