• About Us
  • Contact Us
  • Privacy Policy
  • Term and Conditions
Tuesday, June 3, 2025
  • Login
No Result
View All Result
Green Post
  • Home
  • News
    • National
    • Sports
    • Business
  • Lifestyle
    • Travel and Tourism
    • Style and Fashion
    • Health and Fitness
    • Entertainment
      Farhan Akhtar’s Heartwarming Post on Daughter’s Birthday

      Farhan Akhtar’s Heartwarming Post on Daughter’s Birthday

      Hira Somroo expresses disappointment over not getting her desired role

      Actors Explaining Religion Yasra Rizvi Addresses Criticism

      “Actors Explaining Religion? Yasra Rizvi Addresses Criticism”

      Nia Sharma Admires Pakistani Actors

      Nia Sharma Admires Pakistani Actors, Calls Their Dramas Romantic and Captivating

      Hania Aamir Faces Severe Criticism Over Bold Photoshoot

      Hania Aamir Faces Severe Criticism Over Bold Photoshoot

      Obscene Question

      “Obscene Question” Controversy: Legal Pressure Mounts on Samay Raina and Ranveer Allahbadia

      What Gift Did the Hero of Mawra’s Film ‘Sanam Teri Kasam’

      What Gift Did the Hero of Mawra’s Film ‘Sanam Teri Kasam’ Give to the Actress on Her Wedding?

      Shocking Revelation Maryam Nafees’ Husband Turns Out

      Shocking Revelation: Maryam Nafees’ Husband Turns Out to Be Bushra Ansari’s Former Son-in-Law

      Sanam Teri Kasam 2 Announced Will Mawra Be Part of the Film

      Sanam Teri Kasam 2 Announced: Will Mawra Be Part of the Film?

  • Technology & Innovation
    Hackers Intensify Crypto Scams with 83% More Attacks detected in 2024: Kaspersky report

    Hackers Intensify Crypto Scams with 83% More Attacks detected in 2024: Kaspersky report

    89% of parents use gadgets to entertain and occupy their children

    89% of parents use gadgets to entertain and occupy their children

    Big News About the Launch of Apple's New Device!

    Big News About the Launch of Apple’s New Device!

    Planet Discovered Orbiting a Star Moving Faster Than Light

    Planet Discovered Orbiting a Star Moving Faster Than Light

    Apple Follows Google in Renaming Gulf of Mexico on Its Maps

    Apple Follows Google in Renaming Gulf of Mexico on Its Maps

    Method Discovered to Tackle Toxic 'Forever Chemicals'

    Method Discovered to Tackle Toxic ‘Forever Chemicals’

    Trending Tags

    • Sillicon Valley
    • Climate Change
    • Election Results
    • Flat Earth
    • Golden Globes
    • MotoGP 2017
    • Mr. Robot
  • Opinion & Blogs
  • Magazine
  • Today’s Newspaper
  • Our Principles
  • Home
  • News
    • National
    • Sports
    • Business
  • Lifestyle
    • Travel and Tourism
    • Style and Fashion
    • Health and Fitness
    • Entertainment
      Farhan Akhtar’s Heartwarming Post on Daughter’s Birthday

      Farhan Akhtar’s Heartwarming Post on Daughter’s Birthday

      Hira Somroo expresses disappointment over not getting her desired role

      Actors Explaining Religion Yasra Rizvi Addresses Criticism

      “Actors Explaining Religion? Yasra Rizvi Addresses Criticism”

      Nia Sharma Admires Pakistani Actors

      Nia Sharma Admires Pakistani Actors, Calls Their Dramas Romantic and Captivating

      Hania Aamir Faces Severe Criticism Over Bold Photoshoot

      Hania Aamir Faces Severe Criticism Over Bold Photoshoot

      Obscene Question

      “Obscene Question” Controversy: Legal Pressure Mounts on Samay Raina and Ranveer Allahbadia

      What Gift Did the Hero of Mawra’s Film ‘Sanam Teri Kasam’

      What Gift Did the Hero of Mawra’s Film ‘Sanam Teri Kasam’ Give to the Actress on Her Wedding?

      Shocking Revelation Maryam Nafees’ Husband Turns Out

      Shocking Revelation: Maryam Nafees’ Husband Turns Out to Be Bushra Ansari’s Former Son-in-Law

      Sanam Teri Kasam 2 Announced Will Mawra Be Part of the Film

      Sanam Teri Kasam 2 Announced: Will Mawra Be Part of the Film?

  • Technology & Innovation
    Hackers Intensify Crypto Scams with 83% More Attacks detected in 2024: Kaspersky report

    Hackers Intensify Crypto Scams with 83% More Attacks detected in 2024: Kaspersky report

    89% of parents use gadgets to entertain and occupy their children

    89% of parents use gadgets to entertain and occupy their children

    Big News About the Launch of Apple's New Device!

    Big News About the Launch of Apple’s New Device!

    Planet Discovered Orbiting a Star Moving Faster Than Light

    Planet Discovered Orbiting a Star Moving Faster Than Light

    Apple Follows Google in Renaming Gulf of Mexico on Its Maps

    Apple Follows Google in Renaming Gulf of Mexico on Its Maps

    Method Discovered to Tackle Toxic 'Forever Chemicals'

    Method Discovered to Tackle Toxic ‘Forever Chemicals’

    Trending Tags

    • Sillicon Valley
    • Climate Change
    • Election Results
    • Flat Earth
    • Golden Globes
    • MotoGP 2017
    • Mr. Robot
  • Opinion & Blogs
  • Magazine
  • Today’s Newspaper
  • Our Principles
No Result
View All Result
Green Post
No Result
View All Result
Home Technology and Innovation

Kaspersky uncovers global malicious campaign targeting fintech users through Telegram

by Web Desk
November 8, 2024
in Technology and Innovation
0
Kaspersky uncovers global malicious campaign targeting fintech users through Telegram
0
SHARES
12
VIEWS
Share on FacebookShare on Twitter

Islamabad : Kaspersky Global Research and Analysis team (GReAT) has uncovered a malicious global campaign in which attackers used Telegram to deliver Trojan spyware, potentially targeting individuals and businesses in the fintech and trading industries in multiple countries across Europe, Asia including Pakistan, Latin America, and the Middle East. The malware is designed to steal sensitive data, such as passwords, and take control of users’ devices for espionage purposes.

The campaign is believed to be linked to DeathStalker , an infamous hack-for-hire APT (Advanced Persistent Threat) actor offering specialized hacking and financial intelligence services. In the recent wave of attacks observed by Kaspersky, threat actors attempted to infect victims with DarkMe malware – a remote access Trojan (RAT), designed to steal information and execute remote commands from a server controlled by the perpetrators.

Deathstalker, previously known as Deceptikons, is a threat actor group active since at least 2018, and potentially since 2012. The group’s primary goal is collecting business, financial and private personal information, possibly for competitive or business intelligence purposes serving their clientele. They typically target small and medium businesses, financial, fintech, law firms, and on a few occasions, governmental entities. Despite going after these types of targets, DeathStalker has never been observed stealing funds, which is why Kaspersky believes it to be a private intelligence outfit .

“Instead of using traditional phishing methods, threat actors relied on Telegram channels to deliver the malware. In earlier campaigns, we also observed this operation using other messaging platforms, such as Skype, as a vector for initial infection. This method may make potential victims more inclined to trust the sender and open the malicious file than in the case with a phishing website. Additionally, downloading files through messaging apps may trigger fewer security warnings compared to standard internet downloads, which is favourable for the threat actors,” explains Maher Yamout, Lead Security Researcher from GReAT. “While we typically advise vigilance against suspicious emails and links, this campaign highlights the need for caution when dealing even with instant messaging apps like Skype and Telegram.”

The infection chain analysis reveals the attackers were most likely attaching malicious archives to posts in Telegram channels. The archives themselves, such as RAR or ZIP files, were not malicious, but they contained harmful files with extensions like .LNK, .com, and .cmd. If potential victims launched these files, it leads to the installation of the final-stage malware, DarkMe, in a series of actions.

In addition to using Telegram for malware delivery, the attackers improved their operational security and post-compromise cleanup. After installation, the malware removed the files used to deploy the DarkMe implant. To further hinder analysis and try to evade detection, perpetrators increased the implant’s file size and deleted other footprints, such as post-exploitation files, tools, and registry keys, after achieving their goal.

The group also has an interesting tendency to attempt to avoid attribution of their activities by mimicking other APT actors and incorporating false flags.

For personal security, Kaspersky recommends to Install a trusted security solution and follow its recommendations. Organizations are advised to provide InfoSec professionals with in-depth visibility into cyberthreats targeting organizations of their sector. The latest Kaspersky Threat Intelligence will supply them with rich and meaningful context across the entire incident management cycle and help to identify cyber risks in time. With practically-oriented Kaspersky Expert training, InfoSec professionals can advance their hard skills and be able to defend their companies against sophisticated attacks. They can choose the most appropriate format and follow either self-guided, online courses or trainer-led live courses. To protect the company against a wide range of threats, use solutions from Kaspersky Next product line that provide real-time protection, threat visibility, investigation and response capabilities.

Default Avatar

Web Desk

Next Post
COAS Attends Funeral of Quetta Blast Martyrs, Vows Unwavering Fight Against Terrorism

COAS Attends Funeral of Quetta Blast Martyrs, Vows Unwavering Fight Against Terrorism

Leave a Reply Cancel reply

Your email address will not be published. Required fields are marked *

Recommended

ICCI

ICCI and FPCCI to work closely to address key issues of business community

1 year ago
Oxford Press Declares 'Brain Rot' as Word of the Year 2024

Oxford Press Declares ‘Brain Rot’ as Word of the Year 2024

6 months ago

Popular News

    Connect with us

    Category

    • Amazing
    • Business
    • E-Paper
    • Entertainment
    • Health
    • Health and Fitness
    • Lifestyle
    • National
    • News
    • Opinion
    • Opinion & Blogs
    • Pakistan
    • Politics
    • Science
    • Sports
    • Style and Fashion
    • Technology and Innovation
    • Travel and Tourism

    Useful Links

    • About
    • Our Dream
    • Submission
    • Contact Us
    • Term and Conditions
    • Privacy Policy

    About Us

    Sometimes, businesses are afraid that in-depth explanations of their products aren’t interesting enough or will sound unappealing in writing.

    • Home
    • News
    • Lifestyle
    • Technology & Innovation
    • Opinion & Blogs
    • Magazine
    • Today’s Newspaper
    • Our Principles

    The Green Post © 2024. All Rights Reserved.

    No Result
    View All Result
    • Home
    • News
      • National
      • Sports
      • Business
    • Lifestyle
      • Travel and Tourism
      • Health and Fitness
      • Style and Fashion
      • Entertainment
    • Technology and Innovation
    • Opinion & Blogs
    • Our Dream
    • Contact Us
    • What We Are and What We Do?
    • Magazine
    • Our Principles
    • Privacy Policy
    • Term and Conditions
    • Submission
    • Copyright
    • Contact Us
    • Cookies
    • About Us

    The Green Post © 2024. All Rights Reserved.

    Welcome Back!

    Login to your account below

    Forgotten Password?

    Create New Account!

    Fill the forms below to register

    All fields are required. Log In

    Retrieve your password

    Please enter your username or email address to reset your password.

    Log In