56.6 F
Los Angeles
24 Nisan 2024
AnasayfaA-MansetM-EnglishUS: Pro-India malware spying on Pakistan military

US: Pro-India malware spying on Pakistan military

By Ovunc Kutlu

ANKARA (AA) – Two malware programs on an Android-based platform that emerged in India have been spying on the Pakistani military, according to a US-based cybersecurity company.

In a Feb. 10 statement, Lookout said it has discovered the two malware, Hornbill and SunBird, which are used by a cyber group named Confucius that first appeared in 2013 as "a state-sponsored, pro-India actor primarily pursuing Pakistani and other South Asian targets."

"Targets of these tools include personnel linked to Pakistan’s military, nuclear authorities, and Indian election officials in Kashmir," the statement said.

"Hornbill and SunBird have sophisticated capabilities to exfiltrate SMS, encrypted messaging app content, and geolocation, among other types of sensitive information," it added.

Confucius had created in the past malware for Windows operating system, but the group has been known developing mobile malware since 2017 when spying app ChatSpy was created.

While SunBird has a remote access function that can execute commands on a device by an attacker, Hornbill is a surveillance tool that can extract data from users.

"SunBird has been disguised as applications that include Security services, such as the fictional “Google Security Framework”, Apps tied to specific locations (“Kashmir News”) or activities (“Falconry Connect” and “Mania Soccer”), Islam-related applications (“Quran Majeed”)," the report said.

The majority of applications appear to target Muslim individuals, the report added.

Both malware, which is circulated as fake Android apps, can access users' call logs, contacts, images, browser history, and they take screenshots and photos with device camera.

Some major targets included an ''individual who applied for a position at the Pakistan Atomic Energy Commission, individuals with numerous contacts in the Pakistan Air Force (PAF), as well as officers responsible for electoral rolls (Booth Level Officers) located in the Pulwama district of Kashmir", the analysis found.

"The data included information on victims in Europe and the United States, some of which appear to be targets of spouse ware or stalkerware. It also included data on Pakistani nationals in Pakistan, India and the United Arab Emirates that we believe may be targeted by Confucius APT campaigns between 2018 and 2019," the detailed report added.

Alaturka Online
Alaturka Onlinehttps://www.AlaturkaOnline.com
Amerika'nın ilk Türkçe internet Gazetesi, Alaturka Online, 2001 yılından beri Amerika'da en çok okunan, tamamen bağımsız ve tarafsız haber yapan tek Türk Gazetesi. First Turkish American Newspaper - Amerika'daki Türklere Ulaşmanın en Kolay Yolu ! Habersizsiniz ya da Haber Sizsiniz! Alaturka, Gerçek insanlar, Gerçek Haberler. Amerika'daki Aileniz - Alaturka.

ALATURKA AİLESİ ÜYELERİ NE DİYOR?

Bu site, istenmeyenleri azaltmak için Akismet kullanıyor. Yorum verilerinizin nasıl işlendiği hakkında daha fazla bilgi edinin.

Sosyal Medyada Bizi Takip Edin

181,537BeğenenlerBeğen
80,592TakipçilerTakip Et
3,552TakipçilerTakip Et
7,662TakipçilerTakip Et
41,800AboneAbone Ol

Kaçırmayın

Alaturka Online sitesinden daha fazla şey keşfedin

Okumaya devam etmek ve tüm arşive erişim kazanmak için hemen abone olun.

Okumaya devam et