Open Source Malware Surges 140% as Attacks Target Developers
Klopatra malware has infected around 3,000 devices by mimicking a free VPN app to steal banking credentials and build a botnet, cybersecurity firm Cleafy said.
- Cybersecurity firm Cleafy issued a report saying Klopatra poses as the free VPN Mobdro Pro IP + VPN, leveraging the Mobdro brand to trick users into installing malware.
- Kaspersky researchers in the past year warned of rising malware apps posing as free VPNs, including MaskVPN, PaladinVPN, ShineVPN, ShieldVPN, DewVPN and ProxyGate.
- A fake installation wizard guides users through steps that hand over total control using accessibility services, while Cleafy says the group probably based in Turkey is refining its tactics.
- Victims face drained banking apps as Klopatra abuses accessibility services, and Cleafy believes it has roped around 3,000 devices mainly in Italy and Spain.
- App stores may be slow to remove implicated apps, so users should vet free VPN apps before downloading and, if unsure, choose Proton VPN or hide.me.
49 Articles
49 Articles
A sophisticated malware called Klopatra is causing chaos, because it is camouflaged in highly requested apps, which offer from pirate IPTV lists, to free VPNs.
Security Researchers Warn a Widely Used Open Source Tool Poses a 'Persistent' Risk to the US
The open source software easyjson is used by the US government and American companies. But its ties to Russia’s VK, whose CEO has been sanctioned, have researchers sounding the alarm.
A new malicious ad campaign has managed to manipulate Grok, the "chatbot" integrated into social network X (formerly Twitter), to spread large-scale phishing and malware links.
Malicious Ivanti VPN Client Sites In Google Search Deliver Malware — Users Warned - Cybernoz - Cybersecurity News
Cybersecurity researchers at Zscaler have uncovered a sophisticated malware campaign that exploits search engine optimization (SEO) poisoning to distribute a trojanized version of the Ivanti Pulse Secure VPN client, targeting unsuspecting users seeking legitimate software downloads. The Zscaler Threat Hunting team recently detected a surge in malicious activity leveraging SEO manipulation, primarily targeting Bing search engine users. Cybercrimi…
Coverage Details
Bias Distribution
- 50% of the sources lean Left, 50% of the sources are Center
Factuality
To view factuality data please Upgrade to Premium