#astaroth

[ follow ]
Information security
fromThe Hacker News
21 hours ago

WhatsApp Worm Spreads Astaroth Banking Trojan Across Brazil via Contact Auto-Messaging

Astaroth banking trojan is being spread via WhatsApp-based worm modules targeting Brazil, using Python for propagation while core components use Delphi and Visual Basic.
fromThe Hacker News
2 months ago

Astaroth Banking Trojan Abuses GitHub to Remain Operational After Takedowns

"Instead of relying solely on traditional command-and-control (C2) servers that can be taken down, these attackers are leveraging GitHub repositories to host malware configurations," McAfee Labs researchers Harshil Patel and Prabudh Chakravorty said in a report. "When law enforcement or security researchers shut down their C2 infrastructure, Astaroth simply pulls fresh configurations from GitHub and keeps running."
Information security
[ Load more ]