Connect with us

TECHNOLOGY

New SandStrike spyware targets Android users with booby-trapped VPN application

November 7, 2022 1:32 p.m.

In the third quarter of 2022, Kaspersky researchers uncovered a previously unknown Android espionage campaign dubbed SandStrike.

The actor targets a Persian-speaking religion minority, Baháʼí, via distributing VPN app that contains highly sophisticated spyware. Kaspersky experts also discovered an advanced upgrade of DeathNote cluster and – together with SentinelOne – investigated never-seen-before malware Metatron. This, and other discoveries are revealed in Kaspersky’s latest quarterly threat intelligence summary.

To lure victims into downloading the spyware implants, adversaries set up Facebook and Instagram accounts with more than 1,000 followers and designed attractive religious-themed graphic materials, setting up an effective trap for adherents of this belief. Most of these social media accounts contain a link to a Telegram channel also created by the attacker. 

In this channel, the actor behind SandStrike distributed a seemingly harmless VPN application to access sites banned in certain regions, for example, religious-related materials. To make this application fully functional, adversaries also set up their own VPN infrastructure.

However, the VPN client contains fully-functioning spyware with capabilities allowing threat actors to collect and steal sensitive data, including call logs, contact lists, and also track any further activities of persecuted individuals.

Throughout the third quarter of 2022, APT actors were continuously changing their tactics, sharpening their toolsets and developing new techniques. The most significant findings include:

  • The new sophisticated malware platform targeting telecoms companies, ISPs and universities

    Together with SentinelOne, Kaspersky researchers analyzed a never-seen-before sophisticated malware platform dubbed Metatron. Metatron primarily targets telecommunications, internet service providers, and universities in Middle Eastern and African countries. Metatron is designed to bypass native security solutions while deploying malware platforms directly into memory.  
  • The upgrade of advanced and sophisticated tools

    Kaspersky experts observed Lazarus use the DeathNote cluster against victims in South Korea. The actor possibly used a strategic web compromise, employing an infection chain similar to that which Kaspersky researchers have previously reported, attacking an endpoint security program. However, experts discovered that the malware and infection schemes have also been updated. The actor used malware that hadn’t been seen before, with minimal functionality to execute commands from the C2 server. Using this implanted backdoor, the operator lay hidden in the victim’s environment for a month and collected system information.
  • Cyber-espionage continues to be a prime aim of APT campaigns

    In the third quarter of 2022, Kaspersky researchers detected numerous APT campaigns, whose main target is governmental institutions. Our recent investigations show that this year, from February onwards, HotCousin has attempted to compromise foreign affairs ministries in Europe, Asia, Africa and South America.

“As we can see from the analysis of the last three months, APT actors are now strenuously used to create attack tools and improve old ones to launch new malicious campaigns. In their attacks, they use cunning and unexpected methods: SandStrike, attacking users via VPN service, where victims tried to find protection and security, is an excellent example. Today it is easy to distribute malware via social networks and remain undetected for several months or even more. This is why it is so important to be as alert as ever and make sure you are armed with threat intelligence and the right tools to protect from existing and emerging threats,” comments Victor Chebyshev, lead security researcher at Kaspersky’s GReAT.

To read the full APT Q3 2022 trends report, please visit Securelist.com

In order to avoid falling victim to a targeted attack by a known or unknown threat actor, Kaspersky researchers recommend implementing the following measures:

  • Provide your SOC team with access to the latest threat intelligence (TI). The Kaspersky Threat Intelligence Portal is a single point of access for the company’s TI, providing cyberattack data and insights gathered by Kaspersky over the past 20 years. To help businesses enable effective defenses in these turbulent times, Kaspersky announced free access to independent, continuously updated and globally sourced information on ongoing cyberattacks and threats. Request access online.
  • Upskill your cybersecurity team to enable them to tackle the latest targeted threats with Kaspersky online training developed by GReAT experts. 
  • Use enterprise-grade EDR solution such as Kaspersky EDR Expert. It is essential to detect threats among a sea of scattered alerts thanks to automatic merging of alerts into incidents as well as to analyze and respond to an incident in the most effective way.  
  • In addition to adopting essential endpoint protection, implement a corporate-grade security solution that detects advanced threats on the network level at an early stage, such as Kaspersky Anti Targeted Attack Platform.
  • As many targeted attacks start with social engineering techniques, such as phishing, introduce security awareness training and teach practical skills to your team – using tools such as the Kaspersky Automated Security Awareness Platform.
Continue Reading
Advertisement

Click to comment

Leave a Reply

Your email address will not be published.

TECHNOLOGY

Pre-order vivo V50 Lite until April 25 to enjoy exclusive perks

1:30 p.m. April 18, 2025

There’s a new must-have phone in town and it’s Maine Mendoza-approved. Meet the all-new vivo V50 Lite with features that are perfect for go-getters, creatives, and trendsetters.

Whether you’re a heavy user or someone who’s always on the go like Maine, the massive 6500mAh BlueVolt battery will keep you powered all day. And when it’s finally time to recharge, vivo’s 90W FlashCharge ensures you’re back to full power in a flash. It’s no wonder this is Maine’s latest favorite!

But the vivo V50 Lite isn’t just about battery life. It’s built to impress from the inside out.

What makes the vivo V50 Lite a game-changer?

  • SGS Five-Star Drop Resistance – Engineered for durability so you can stay worry-free even during accidental drops.
  • IP65 Dust and Water Resistance – Ready for unpredictable weather and everyday mishaps.
  • 60-Month Smooth Experience – Enjoy reliable performance that lasts for five years.
  • AI SuperLink – Stay connected even in weak signal areas with this smart, always-on connectivity solution.
  • 50MP Sony IMX882 Camera with Aura Light – Capture vibrant, clear, and well-lit photos even in low light.
  • 120Hz Ultra Vision AMOLED Display – See and scroll with incredible clarity and smoothness.
  • Dual Stereo Speakers with up to 400% Volume – Experience rich, immersive audio whether you’re watching or listening.

Choose the right vibe for you

The vivo V50 Lite comes in three powerful variants to match your lifestyle:

  • 8GB RAM + 256GB ROM (4G) – Php 13,999
  • 8GB RAM + 256GB ROM (5G) – Php 16,999
  • 12GB RAM + 512GB ROM (5G) – Php 19,999

Until April 25, vivo fans who pre-order the V50 Lite will enjoy exclusive perks:

  • Php 1,000 Off
  • Limited Edition vivo Buds
  • vivo VIP Card with 5-year battery warranty and 6 months extended warranty

Visit any vivo store nationwide and secure your vivo V50 Lite today. Don’t miss out as this is your chance to own the phone that’s not only smart and stylish, but also Maine Mendoza’s top pick for 2025.

The vivo V50 Lite: power meets beauty. Pre-order yours now!

Continue Reading

TECHNOLOGY

Samsung unveils epic screens for the ultimate gaming experience

5:19 p.m. April 8, 2025

As the Philippine gaming community continues expanding rapidly, the urge for top-tier gaming displays has never been greater. Samsung stands at the forefront, unlocking a new phase of gaming for Filipinos through its Odyssey lineup that is set to take users beyond reality.

Samsung’s gaming monitors deliver unparalleled speed, precision, and immersion from the revolutionary glasses-free Odyssey 3D to the ultrawide Odyssey G9 and the industry-first 4K, 240Hz OLED G8

A New Dimension in Gaming with the Odyssey 3D

The 27-inch Odyssey 3D (G90XF model) monitor introduces a next-level 3D experience, without the need for special glasses. By combining advanced eye-tracking with a lenticular lens, it delivers vibrant, lifelike 3D visuals through Samsung’s Reality Hub app. 

Samsung has collaborated with top developers like Nexon (The First Berserker: Khazan) and Neowiz (Lies of P, Overture DLC) to ensure seamless 3D optimization. The built-in AI-powered 3D conversion enhances both gaming and video content, supported by a 165Hz refresh rate and 1ms Gray-to-Gray (GtG) response time for fluid, responsive performance on its 4K screen. AMD FreeSync™ Premium and NVIDIA G-SYNC compatibility eliminate choppiness and lag, even during fast-paced action.

For deeper immersion, Edge Lighting adapts to in-game visuals, illuminating the gaming space with synchronized ambient colors that amplify the 3D visuals and bring game environments to life. 

Stunning OLED Brilliance with the Odyssey OLED G8

Available in 27” and 32”, the Odyssey OLED G8 sets a new standard for gaming displays. It features the industry’s highest pixel density for a 27” display, paired with the world’s first 4K resolution monitor with 240Hz refresh rate, delivering unmatched fluidity and responsiveness. 

Its quantum dot technology and VESA DisplayHDR™ TrueBlack 400 ensure vivid colors and deep contrasts. Built for long-term durability, it features dynamic Cooling Safety and Samsung OLED Safeguard+ to prevent burn-in and ensure prolonged performance. 

Other standout features include AI image upscaling, customizable Core Lighting+, and a sleek metal design, making this monitor as stylish as it is functional. Glare-free technology, certified by Underwriters Laboratories (UL), reduces screen reflections, while the AI processor optimizes lower-resolution content for the full 4K experience.

Expanding Horizons with the Odyssey G9

With its expansive 49” Dual QHD curved display and Picture-in-Picture features, the Odyssey G9 (G91F model) is ideal for immersive gameplay and multitasking. The HDR10+ GAMING supports optimized brightness and color range for a dynamic picture. A 144Hz refresh rate and AMD FreeSync Premium Pro guarantee smooth, vibrant gameplay. The Odyssey G9 also streamlines gaming access with Auto Source Switch+, automatically detecting connected devices and displaying them as soon as they are powered on, making gaming setups more effortless.

Unleash Victory with your Next Phase of Gaming

The advanced features and seamless connectivity ensure Filipino gamers stay ahead in the rapidly evolving gaming landscape. Each movement is presented with accuracy, giving players a clear competitive advantage, because when it comes to gaming, second best is never an option.

Pre-order Samsung’s Odyssey monitors until April 19, 2025 and enjoy exclusive discounts and perks. Early bird customers receive PHP 3,000 worth of e-vouchers, along with special deals such as up to Php 27,600 on the 32” Odyssey OLED G8,  Php 19,800 off on the 49” Odyssey G9, and Php 45,850 off on the 27” Odyssey 3D. Elevate your gaming setup and seize the victory you’ve been striving for.

To know more about Samsung’s latest gaming technology, visit https://www.samsung.com/ph/monitors/odyssey-gaming-monitor/.

Continue Reading

TECHNOLOGY

DigiPlus bags 7 wins at 2025 Asia-Pacific Stevie Awards

3:56 p.m. April 4, 2025

DigiPlus Interactive Corp. (DigiPlus), the pioneer in digital sports and entertainment in the Philippines and the company behind leading gaming brands such as BingoPlus, ArenaPlus, and GameZone, won seven honors –  including five coveted gold awards – at the 2025 Asia-Pacific Stevie Awards. 

This milestone places DigiPlus among the most awarded companies in the region this year, spotlighting its strategic growth and transformative impact across digital entertainment, social development, and investor relations. 

The Asia-Pacific Stevie Awards are the only business awards program that recognizes innovation across all 29 markets in the region. Widely regarded as the world’s premier business awards, the Stevie Awards represent a prestigious recognition of business excellence. 

DigiPlus bagged five Gold Stevies for ‘Innovative Achievement in Growth’, ‘Innovation in Investor Relations’, ‘Excellence in Social Impact Companies’, ‘Innovation in Annual Reports’, and ‘Innovation in Corporate Websites’. The company also clinched Silver and Bronze Stevies for ‘Achievement in Product Innovation’ and ‘Innovation in Brand Renovation’ respectively. 

At the core of these wins is DigiPlus’ commitment to innovation and digital transformation. From redefining the player experience through localized and immersive content, to launching a refreshed brand identity that resonates with a more connected and tech-savvy user base, DigiPlus has embraced a future-forward mindset. The company’s calculated investments in big data, cutting-edge technologies, and stakeholder engagement have not only fueled business growth, but also opened inclusive pathways to digital participation through its social development arm, BingoPlus Foundation. 

“This momentous victory at the Asia-Pacific Stevie Awards affirms DigiPlus’ emergence as a true powerhouse of innovation and progress, reshaping industry boundaries and redefining digital consumer engagement on a global scale,” said DigiPlus Chairman Eusebio Tanco. “Through consistent growth and business performance, DigiPlus reaffirms its unwavering commitment to creating long-term value.”

Winning entries in the Asia-Pacific Stevie Awards undergo a rigorous, multi-layered evaluation by an esteemed panel of judges composed of business and industry leaders across the region. “The 12th Asia-Pacific Stevie Awards received an impressive array of outstanding entries,” said Maggie Miller, President of the Stevie Awards. “This year’s winners have clearly shown their dedication to innovation, and we commend their resilience and imaginative efforts.”

Continue Reading