Tag

Evasion Techniques

All articles tagged with #evasion techniques

Beware of Chameleon Android malware stealing financial information.

Originally Published 2 years ago — by BleepingComputer

Featured image for Beware of Chameleon Android malware stealing financial information.
Source: BleepingComputer

A new Android trojan called Chameleon has been discovered by cybersecurity firm Cyble, which has been targeting users in Australia and Poland since the start of the year. The malware mimics the CoinSpot cryptocurrency exchange, an Australian government agency, and the IKO bank. Chameleon includes a wide range of malicious functionality, including stealing user credentials through overlay injections and keylogging, cookies, and SMS texts from the infected device. The malware performs a variety of checks to evade detection by security software and requests permission to use the Accessibility Service, which it abuses to grant itself additional permissions, disable Google Play Protect, and stop the user from uninstalling it.

Emotet Botnet Returns with Social Engineering Tactics

Originally Published 2 years ago — by Ars Technica

Featured image for Emotet Botnet Returns with Social Engineering Tactics
Source: Ars Technica

Emotet, one of the most dangerous botnets, has returned after a four-month hiatus with new evasion techniques. The botnet sends malicious spam messages that appear to come from a known contact, address the recipient by name, and seem to be replying to an existing email thread. The malware pilfers passwords and other sensitive data and uses the device to send malicious spam to other users. The infection chain includes downloading additional malware such as the Ryuk ransomware or the TrickBot malware. The latest revival includes binary padding, invisible text, and a graphic that says the content can’t be accessed unless the user clicks the “enable content” button.