Infosecurity Magazine reports that threat actors have exploited Microsoft's .NET MAUI cross-platform development framework to craft fake apps masquerading as legitimate services that facilitate covert compromise in new Android malware campaigns.Android device users in India have been targeted with an attack involving a bogus IndusInd Bank app that lures users into inputting their personal and financial information, which are later exfiltrated to threat actors' command-and-control server, according to a McAfee report. On the other hand, Chinese users have been subjected to an intrusion involving a fraudulent social networking site that enabled multi-stage malware compromise to further evade detection. Such campaigns should prompt Android and other mobile users to be vigilant of apps seeking excessive permissions, leverage security software, and download apps from official app marketplaces, said McAfee researchers. "To keep up with the rapid evolution of cyber-criminal tactics, users are strongly advised to install security software on their devices and keep it up to date at all times," noted McAfee.
A Russian national has been charged by the U.S. Department of Justice for allegedly operating approximately 255 fake accounts on a freelance platform to distribute malware-laced Excel attachments to around 80,000 users in 2016 and 2017.
The malicious code performs two main functions: a mobile ad-fraud and gambling-redirect chain, and a WebKit-to-kernel exploit chain on iPhones that installs spyware.
Get daily email updates
SC Media's daily must-read of the most current and pressing daily news