HomeCyber SecurityInfostealer shakeup, new assault vector for cellular, and Nomani

Infostealer shakeup, new assault vector for cellular, and Nomani


Massive shifts within the infostealer scene, novel assault vector towards iOS and Android, and a large surge in funding scams on social media

Threat Report H2 2024: Infostealer shakeup, new attack vector for mobile, and Nomani

Generally, our telemetry information looks like the waters of a peaceful bay, with small, clean waves gently rocking the ships anchored there to sleep. Different occasions, nonetheless, sturdy winds come and alter the whole lot, bringing towering waves and scattering the ships far and wide, remodeling the terrain of the bay itself within the course of.

ESET Risk Report H2 2024 felt a bit like that. Main malware households have been taken down by regulation enforcement; cellular gadgets noticed the start of a brand new, probably very enticing, assault vector concentrating on each iOS and Android; there was yet one more legal “crypto gold rush”; and deepfake scams flooded social media.

Within the first part of this newest ESET Analysis Podcast episode, ESET Distinguished Researcher Aryeh Goretsky and Safety Consciousness Specialist Ondrej Kubovič talk about the infamous primary infostealer Agent Tesla being changed by its outdated competitor Formbook, the takedown of Redline Stealer and Meta Stealer, and a brand new social engineering approach fueling the speedy progress of Lumma Stealer.

Additionally they take a more in-depth take a look at a novel assault vector that works for each Android and iOS gadgets, one that’s misusing applied sciences permitting cellular customers to put in apps straight from web sites from cellular browsers.

Within the closing a part of the H2 2024 episode, Aryeh and Ondrej additionally go over the booming numbers of funding scams on social media, detected as HTML/Nomani, describing the seems, social engineering, and influence of this fraudulent exercise.

If any of the subjects caught your curiosity, take heed to the newest episode of the ESET Analysis podcast. For those who desire the “print” model, obtain the total H2 2024 report from the Risk Studies part of WeLiveSecurity.com.

Mentioned:

  • Infostealer shakeup 2:10
  • A novel assault vector for iOS and Android 16:35
  • Nomani scams 27:00

RELATED ARTICLES

LEAVE A REPLY

Please enter your comment!
Please enter your name here

- Advertisment -
Google search engine

Most Popular

Recent Comments