New Android attack: You should not respond to this social networks invitation

Google has confirmed that it has blocked more than 2.3 million Android apps in its ongoing fight against malicious actors, introduced innovative new Android device protections, and even brought in new security rules. But still, the threats persist, and now, according to the latest research from Kaspersky, Android users really mustn’t respond to this seemingly very friendly social media invite, or their Gmail and WhatsApp data could be at risk alongside their money. Here’s what you need to know and what you must not do.

A malicious hacking crusade that Android users have observed through Kaspersky security researchers. It uses an invitation from the maximum harmful social networks to gather knowledge of your device, adding Gmail and WhatsApp messages, before everything sends money requests. Known as Tria Stealer, the Hacking Crusade uses likely innocent wedding invitations sent to the employ of social media platforms to trick users into downloading the treacherous malware.

Basically several articles discovered on Facebook and X were used in the campaign, which Kaspersky says has been running since March 2024. To view the planned marriage virtually, of course, the user will have to click on a link. Oh, oh, yes, it’s so simple. This installs malicious software.

“Tialler’s Stealer collects patient SMS knowledge, follows call newspapers, messages, for example, WhatsApp and WhatsApp issues, and knowledge through email, for example, Gmail and Leotters perspect “Array told Fareed Radzi from Kaspersky, the pirate” uses this to divert non -public messaging accounts, usurpes the identity of the owners of accounts to request cash transfers from patients and compromise accounts with other services.

The threat actor involved makes use of the exfiltrated email and messaging data to grab security codes that enable them to hijack WhatsApp and Telegram accounts belonging to the Android user. These are then used, in turn, to distribute the malware to more victims within the users’ contacts. “The threat actor takes advantage of the hijacked WhatsApp and Telegram accounts to impersonate their owners,” Radzi said, “asking the targets’ contacts to transfer money to the actor’s bank accounts.”

“The threat actor steals messages by intercepting notifications from these apps,” Radzi said.

“The risk actor steals messages through the interception of notifications of those applications,” Radzi said. To mitigate the risk raised for Android users through the risk of Tria Thief, Kaspersky firmly begged the installation of non -reliable resources applications and advised reliable security responses for cellular devices. Fully unforeseen wedding invitations on social networks cannot be a bad concept.

One Community. Many Voices. Create a free account to share your thoughts. 

Our community is about connecting people through open and thoughtful conversations. We want our readers to share their views and exchange ideas and facts in a safe space.

To do this, follow the publication regulations the situations of use of our site.   We have summarized some of those key regulations below. In other words, keep it civil.

Your post will be rejected if we notice that it seems to contain:

User accounts will be blocked if we notice or believe that users are engaged in:

So, how can you be a power user?

Thanks for reading our community guidelines. Please read the full list of posting rules found in our site’s Terms of Service.

Leave a Comment

Your email address will not be published. Required fields are marked *