Anonymous ID: cffdf7 Jan. 29, 2020, 9:34 a.m. No.7955086   🗄️.is 🔗kun   >>5150 >>5312 >>5446

Berkman's use of Telegram app exposes users to malware:

 

A new piece of spyware, that uses the app Telegram for exfiltration, is for sale on the black market.

 

Trojan-delivered Masad Stealer and Clipper was clocked by researchers at Juniper Threat Labs. The spyware uses Telegram as a command and control (CnC) channel to cloak itself in a veil of anonymity.

 

Mounir Hahad, head of Juniper Threat Labs told Infosecurity Magazine: "This kind of malware that uses Telegram for exfiltration is not common at all. Most malware would try to hide exfiltrated data in secured web communication like https."

 

He went on to say that Telegram users would not be affected by Masad Stealer.

 

"This will not use people’s Telegram account. It just uses the Telegram infrastructure to communicate with threat actors controlled Telegram bots," said Hahad.

 

After installing itself on a computer, Masad Stealer busies itself collecting information stored on the system, such as browser passwords, autofill browser field data, and desktop files. The spyware also automatically replaces cryptocurrency wallets from the clipboard with its own.

 

Other information vulnerable to an attack perpetrated through Masad Stealer includes credit card browser data, FileZilla files, steam files, browser cookies, PC and system information, and installed software and processes.

 

https://www.infosecurity-magazine.com/news/new-spyware-uses-telegram/