• Advertise
  • SS7 Hacking
Thursday, June 8, 2023
No Result
View All Result
I Need Hack - Hacking Tutorials, News, Tips
  • Home
  • Exploits

    Enrollment System Project 1.0 Authentication Bypass / SQL Injection

    Total CMS 1.7.4 Cross Site Scripting

    Barebones CMS 2.0.2 Cross Site Scripting

    File Manager Advanced Shortcode 2.3.2 Remote Code Execution

    WordPress Circle Progress 1.0 Cross Site Scripting

    FC Red Bull Salzburg App 5.1.9-R Improper Authorization

    MotoCMS 3.4.3 SQL Injection

    Advance Charity Management 1.0 Insecure Settings

    Packet Storm New Exploits For May, 2023

    Trending Tags

    • sms exploit
    • ss7 software
    • simswap software
    • jpg exploit
    • kali linux
  • Hacking News
    KeePass Vulnerability Could Expose Master Password In Plaintext

    KeePass Vulnerability Could Expose Master Password In Plaintext

    Researchers Observed Backdoor-Like Behavior In Gigabyte Systems

    Researchers Observed Backdoor-Like Behavior In Gigabyte Systems

    Jetpack Plugin Patched A Critical Vulnerability Triggering WordPress Force-Installs

    Jetpack Plugin Patched A Critical Vulnerability Triggering WordPress Force-Installs

    This Campaign Delivers Three Malware Via Pirated Software Videos On YouTube

    This Campaign Delivers Three Malware Via Pirated Software Videos On YouTube

    Hackers Can Bypass Fingerprint Locks On Phones With BrutePrint Attack

    Hackers Can Bypass Fingerprint Locks On Phones With BrutePrint Attack

    GitLab Released Emergency Fix For Critical Vulnerability – Update Now!

    GitLab Released Emergency Fix For Critical Vulnerability – Update Now!

    XSS Flaw Riddled Beautiful Cookie Consent Banner WP Plugin

    XSS Flaw Riddled Beautiful Cookie Consent Banner WP Plugin

    Goldoson Android Malware Target Korean Users Via Legit Apps

    iRecorder Android App Targeted Its Users With AhRAT Malware

    Google Introduces Mobile VRP For Its Android Apps

    Google Introduces Mobile VRP For Its Android Apps

  • Hacking Tools
    VPN vs. MPLS: Choosing the Right Solution for Your Business

    VPN vs. MPLS: Choosing the Right Solution for Your Business

    Regular Expression Denial of Service

    Regular Expression Denial of Service

    External Understanding: Dissecting APIs inside of IoT devices (Part2)

    External Understanding: Dissecting APIs inside of IoT devices (Part2)

    External Understanding: Dissecting APIs inside of IoT devices (Part 1)

    External Understanding: Dissecting APIs inside of IoT devices (Part 1)

    Engaging Social Engineering: Extracting Information through Strategic Interactions

    Engaging Social Engineering: Extracting Information through Strategic Interactions

    Exclusive Interview with Alexandre Teyar – the creator of BurpGPT

    Exclusive Interview with Alexandre Teyar – the creator of BurpGPT

    Secure Coding Practices in Python: Best Practices for Avoiding Common Vulnerabilities

    Secure Coding Practices in Python: Best Practices for Avoiding Common Vulnerabilities

    OSINT: A Thoughtfulness About the Advantages and Disadvantages of this Technique

    OSINT: A Thoughtfulness About the Advantages and Disadvantages of this Technique

    Bypassing and Securing Kubernetes Ingress Network Policies

    Bypassing and Securing Kubernetes Ingress Network Policies

    Trending Tags

    • hacking tools
    • hacking software
    • hacking tips
    • ss7 attacks
    • simswap software
    • sms exploit
  • Hacking Tutorials
    VPN vs. MPLS: Choosing the Right Solution for Your Business

    VPN vs. MPLS: Choosing the Right Solution for Your Business

    Regular Expression Denial of Service

    Regular Expression Denial of Service

    External Understanding: Dissecting APIs inside of IoT devices (Part2)

    External Understanding: Dissecting APIs inside of IoT devices (Part2)

    External Understanding: Dissecting APIs inside of IoT devices (Part 1)

    External Understanding: Dissecting APIs inside of IoT devices (Part 1)

    Engaging Social Engineering: Extracting Information through Strategic Interactions

    Engaging Social Engineering: Extracting Information through Strategic Interactions

    Exclusive Interview with Alexandre Teyar – the creator of BurpGPT

    Exclusive Interview with Alexandre Teyar – the creator of BurpGPT

    Secure Coding Practices in Python: Best Practices for Avoiding Common Vulnerabilities

    Secure Coding Practices in Python: Best Practices for Avoiding Common Vulnerabilities

    OSINT: A Thoughtfulness About the Advantages and Disadvantages of this Technique

    OSINT: A Thoughtfulness About the Advantages and Disadvantages of this Technique

    Bypassing and Securing Kubernetes Ingress Network Policies

    Bypassing and Securing Kubernetes Ingress Network Policies

  • Kali Linux
    Mastering the Future: Key Data Science Skills for a Competitive Edge

    Mastering the Future: Key Data Science Skills for a Competitive Edge

    5 Essential Crypto Tools For Linux Users In 2023

    QuadraInspect : Android Framework Providing A Powerful Tool For Analyzing The Security Of Android Applications

    QuadraInspect : Android Framework Providing A Powerful Tool For Analyzing The Security Of Android Applications

    From Endpoint Management to Experience Management – UEM Does It The Best!

    From Endpoint Management to Experience Management – UEM Does It The Best!

    WindowSpy : A Cobalt Strike Beacon Object File Meant For Targetted User Surveillance

    WindowSpy : A Cobalt Strike Beacon Object File Meant For Targetted User Surveillance

    SilentMoonwalk – PoC Implementation Of A Fully Dynamic Call Stack Spoofer

    SilentMoonwalk – PoC Implementation Of A Fully Dynamic Call Stack Spoofer

    Unlock Your Employees’ Potential: How UEM Can Help Achieve Employee Experience

    Unlock Your Employees’ Potential: How UEM Can Help Achieve Employee Experience

    Mimicry : Security Tool For Active Deception In Exploitation And Post-Exploitation

    Mimicry : Security Tool For Active Deception In Exploitation And Post-Exploitation

    Wifi_Db : Script To Parse Aircrack-ng Captures To A SQLite Database

    Wifi_Db : Script To Parse Aircrack-ng Captures To A SQLite Database

    Trending Tags

    • kali linux
    • kali tools
    • hacking tools kali
    • kali hacking
    • pentesting
  • Security
    MOVEit Hack – BBC, British Airways Employees Contact and Financial Data Exposed

    MOVEit Hack – BBC, British Airways Employees Contact and Financial Data Exposed

    Hackers Leak i2VPN Admin Credentials on Telegram

    Hackers Leak i2VPN Admin Credentials on Telegram

    Moonlighter – World’s First and Only Satellite-Hacking Sandbox

    Moonlighter – World’s First and Only Satellite-Hacking Sandbox

    ChatGPT Cybersecurity Grant Program – $1M to Boost AI Capabilities

    ChatGPT Cybersecurity Grant Program – $1M to Boost AI Capabilities

    Atomic Wallet Hit by $35M Theft in Recent Crypto Breach

    Atomic Wallet Hit by $35M Theft in Recent Crypto Breach

    A Complete Malware Analysis Tutorial, Cheatsheet & Tools List – 2023

    A Complete Malware Analysis Tutorial, Cheatsheet & Tools List – 2023

    British Airways, BBC and Boots Hit by Suspected Russian Cyber Attack

    British Airways, BBC and Boots Hit by Suspected Russian Cyber Attack

    Gmail Flaw Let Hackers Bypass Security Checks

    Gmail Flaw Let Hackers Bypass Security Checks

    Scrubs & Beyond Leaks 400GB of User PII and Card Data in Plain Text

    Scrubs & Beyond Leaks 400GB of User PII and Card Data in Plain Text

  • Advertise
  • Home
  • Exploits

    Enrollment System Project 1.0 Authentication Bypass / SQL Injection

    Total CMS 1.7.4 Cross Site Scripting

    Barebones CMS 2.0.2 Cross Site Scripting

    File Manager Advanced Shortcode 2.3.2 Remote Code Execution

    WordPress Circle Progress 1.0 Cross Site Scripting

    FC Red Bull Salzburg App 5.1.9-R Improper Authorization

    MotoCMS 3.4.3 SQL Injection

    Advance Charity Management 1.0 Insecure Settings

    Packet Storm New Exploits For May, 2023

    Trending Tags

    • sms exploit
    • ss7 software
    • simswap software
    • jpg exploit
    • kali linux
  • Hacking News
    KeePass Vulnerability Could Expose Master Password In Plaintext

    KeePass Vulnerability Could Expose Master Password In Plaintext

    Researchers Observed Backdoor-Like Behavior In Gigabyte Systems

    Researchers Observed Backdoor-Like Behavior In Gigabyte Systems

    Jetpack Plugin Patched A Critical Vulnerability Triggering WordPress Force-Installs

    Jetpack Plugin Patched A Critical Vulnerability Triggering WordPress Force-Installs

    This Campaign Delivers Three Malware Via Pirated Software Videos On YouTube

    This Campaign Delivers Three Malware Via Pirated Software Videos On YouTube

    Hackers Can Bypass Fingerprint Locks On Phones With BrutePrint Attack

    Hackers Can Bypass Fingerprint Locks On Phones With BrutePrint Attack

    GitLab Released Emergency Fix For Critical Vulnerability – Update Now!

    GitLab Released Emergency Fix For Critical Vulnerability – Update Now!

    XSS Flaw Riddled Beautiful Cookie Consent Banner WP Plugin

    XSS Flaw Riddled Beautiful Cookie Consent Banner WP Plugin

    Goldoson Android Malware Target Korean Users Via Legit Apps

    iRecorder Android App Targeted Its Users With AhRAT Malware

    Google Introduces Mobile VRP For Its Android Apps

    Google Introduces Mobile VRP For Its Android Apps

  • Hacking Tools
    VPN vs. MPLS: Choosing the Right Solution for Your Business

    VPN vs. MPLS: Choosing the Right Solution for Your Business

    Regular Expression Denial of Service

    Regular Expression Denial of Service

    External Understanding: Dissecting APIs inside of IoT devices (Part2)

    External Understanding: Dissecting APIs inside of IoT devices (Part2)

    External Understanding: Dissecting APIs inside of IoT devices (Part 1)

    External Understanding: Dissecting APIs inside of IoT devices (Part 1)

    Engaging Social Engineering: Extracting Information through Strategic Interactions

    Engaging Social Engineering: Extracting Information through Strategic Interactions

    Exclusive Interview with Alexandre Teyar – the creator of BurpGPT

    Exclusive Interview with Alexandre Teyar – the creator of BurpGPT

    Secure Coding Practices in Python: Best Practices for Avoiding Common Vulnerabilities

    Secure Coding Practices in Python: Best Practices for Avoiding Common Vulnerabilities

    OSINT: A Thoughtfulness About the Advantages and Disadvantages of this Technique

    OSINT: A Thoughtfulness About the Advantages and Disadvantages of this Technique

    Bypassing and Securing Kubernetes Ingress Network Policies

    Bypassing and Securing Kubernetes Ingress Network Policies

    Trending Tags

    • hacking tools
    • hacking software
    • hacking tips
    • ss7 attacks
    • simswap software
    • sms exploit
  • Hacking Tutorials
    VPN vs. MPLS: Choosing the Right Solution for Your Business

    VPN vs. MPLS: Choosing the Right Solution for Your Business

    Regular Expression Denial of Service

    Regular Expression Denial of Service

    External Understanding: Dissecting APIs inside of IoT devices (Part2)

    External Understanding: Dissecting APIs inside of IoT devices (Part2)

    External Understanding: Dissecting APIs inside of IoT devices (Part 1)

    External Understanding: Dissecting APIs inside of IoT devices (Part 1)

    Engaging Social Engineering: Extracting Information through Strategic Interactions

    Engaging Social Engineering: Extracting Information through Strategic Interactions

    Exclusive Interview with Alexandre Teyar – the creator of BurpGPT

    Exclusive Interview with Alexandre Teyar – the creator of BurpGPT

    Secure Coding Practices in Python: Best Practices for Avoiding Common Vulnerabilities

    Secure Coding Practices in Python: Best Practices for Avoiding Common Vulnerabilities

    OSINT: A Thoughtfulness About the Advantages and Disadvantages of this Technique

    OSINT: A Thoughtfulness About the Advantages and Disadvantages of this Technique

    Bypassing and Securing Kubernetes Ingress Network Policies

    Bypassing and Securing Kubernetes Ingress Network Policies

  • Kali Linux
    Mastering the Future: Key Data Science Skills for a Competitive Edge

    Mastering the Future: Key Data Science Skills for a Competitive Edge

    5 Essential Crypto Tools For Linux Users In 2023

    QuadraInspect : Android Framework Providing A Powerful Tool For Analyzing The Security Of Android Applications

    QuadraInspect : Android Framework Providing A Powerful Tool For Analyzing The Security Of Android Applications

    From Endpoint Management to Experience Management – UEM Does It The Best!

    From Endpoint Management to Experience Management – UEM Does It The Best!

    WindowSpy : A Cobalt Strike Beacon Object File Meant For Targetted User Surveillance

    WindowSpy : A Cobalt Strike Beacon Object File Meant For Targetted User Surveillance

    SilentMoonwalk – PoC Implementation Of A Fully Dynamic Call Stack Spoofer

    SilentMoonwalk – PoC Implementation Of A Fully Dynamic Call Stack Spoofer

    Unlock Your Employees’ Potential: How UEM Can Help Achieve Employee Experience

    Unlock Your Employees’ Potential: How UEM Can Help Achieve Employee Experience

    Mimicry : Security Tool For Active Deception In Exploitation And Post-Exploitation

    Mimicry : Security Tool For Active Deception In Exploitation And Post-Exploitation

    Wifi_Db : Script To Parse Aircrack-ng Captures To A SQLite Database

    Wifi_Db : Script To Parse Aircrack-ng Captures To A SQLite Database

    Trending Tags

    • kali linux
    • kali tools
    • hacking tools kali
    • kali hacking
    • pentesting
  • Security
    MOVEit Hack – BBC, British Airways Employees Contact and Financial Data Exposed

    MOVEit Hack – BBC, British Airways Employees Contact and Financial Data Exposed

    Hackers Leak i2VPN Admin Credentials on Telegram

    Hackers Leak i2VPN Admin Credentials on Telegram

    Moonlighter – World’s First and Only Satellite-Hacking Sandbox

    Moonlighter – World’s First and Only Satellite-Hacking Sandbox

    ChatGPT Cybersecurity Grant Program – $1M to Boost AI Capabilities

    ChatGPT Cybersecurity Grant Program – $1M to Boost AI Capabilities

    Atomic Wallet Hit by $35M Theft in Recent Crypto Breach

    Atomic Wallet Hit by $35M Theft in Recent Crypto Breach

    A Complete Malware Analysis Tutorial, Cheatsheet & Tools List – 2023

    A Complete Malware Analysis Tutorial, Cheatsheet & Tools List – 2023

    British Airways, BBC and Boots Hit by Suspected Russian Cyber Attack

    British Airways, BBC and Boots Hit by Suspected Russian Cyber Attack

    Gmail Flaw Let Hackers Bypass Security Checks

    Gmail Flaw Let Hackers Bypass Security Checks

    Scrubs & Beyond Leaks 400GB of User PII and Card Data in Plain Text

    Scrubs & Beyond Leaks 400GB of User PII and Card Data in Plain Text

  • Advertise
No Result
View All Result
I Need Hack - Hacking Tutorials, News, Tips
SS7 SMS Intercept SS7 SMS Intercept SS7 SMS Intercept
Home Security

AppleJeus Malware Spreads Fake Windows CryptoApps

by Ineedhack
December 5, 2022
in Security
0
79
SHARES
495
VIEWS
Share on FacebookShare on Twitter
Kripkey Spy Phone Kripkey Spy Phone Kripkey Spy Phone

Volexity’s cybersecurity experts have discovered a new wave in attacks where AppleJeus malware has been distributed via fake cryptocurrency apps. This new campaign is being claimed by researchers to be the work of North Korean APT group .

Notable is the fact that Lazarus hackers used AppleJeus malware to attack multiple cryptocurrency exchanges, according to Hackread.com.

Campaign Analysis

Researchers have found that the has a fake trading site and uses DLL Sideloading to spread the malware. This campaign targets cryptocurrency users and organisations as its primary target.

The group used a modified version of AppleJeus malware to attack their victims via . The campaign began in June 2022, and it is currently active.

“The Lazarus Group is continuing its efforts to target cryptocurrency users, in spite of ongoing attention to the campaigns and tactics. They have chosen to load the payload using chained DLL-sideloading in order to avoid detection. “Despite all these modifications, their goals remain the same with the cryptocurrency market being a focal point as a way for the DPRK bolster its finances,” the researchers stated in their post .

Volexity’s results should not be surprising. As of January 2022 Lazarus hackers had from cryptocurrency exchanges. It was who reported that this group had been using TraderTraitor malware to attack Blockchain organisations in April 2022.

What was the scheme like?

According to reports, the scheme involves creating a live cryptocurrency-themed website that uses content taken from legitimate websites. AppleJeus ran a modified version of DLL Sideloading that has not been publicly documented.

Further investigation revealed that the threat actors had registered the domain name “bloxholdercom ” in June 2022. It was still active at the time this article was written and they configured it to host a website about automated cryptocurrency trading.

The site is a fake HaasOnline website. BloxHolder was used to modify all references to the website.

Legit website (left) – Fake website (right) – Screenshot credit: Volexity

A fake website offers a that is disguised as BloxHolder. The app was used to install the QTBitcoinTrader and AppleJeus malware.

Detail Analysis

Volexity researchers discovered that the Lazarus hacker team was installing AppleJeus malware via malicious MS Office documents called OKX Binance.xls. This document is a replacement for an MSI install. In October 2022, this development was noticed.

A macro was found in the malicious document. It could be split into two sections. First, it decoded an OLE object containing base64 data. This OLE contained a macro.

The first document contained additional variables encoded in base 64 that allowed the hackers to define where malware was going to be installed. OpenDrive was also used by the hackers to distribute the final stage payload.

Researchers couldn’t find the payload that had been deployed in October. The DLL Sideloading mechanism was similar to attacks on the MSI.

Tags: android hackingemail hackingfacebook hackshack newshacking newshacking softwarehacking tipshacking toolsinstagram hackiphone hackingjpg exploitsim swapsimswap attackssimswap hacksmartphone hackingsms exploitss7 softwaretik tok hacktwitter hack
Ineedhack

Ineedhack

Next Post
Kali Linux Version 2022.4 (Azure Social, Kali NetHunter PRO)

Kali Linux Version 2022.4 (Azure Social, Kali NetHunter PRO)

Sim Swap Software Sim Swap Software Sim Swap Software

Recommended

French Hospital suspends operations after cyberattack

6 months ago

SOUND4 IMPACT/FIRST/PULSE/Eco 2.x services Command Injection

6 months ago

Popular News

    • Advertise
    • SS7 Hacking

    ©2017- 2022 Hacking Tutorials

    No Result
    View All Result
    • Home
    • Exploits
    • Hacking News
    • Hacking Tools
    • Hacking Tutorials
    • Kali Linux
    • Security
    • Advertise