Iranian hackers’ Android malware spies on dissidents by stealing 2FA codes

A New Kind of Male Sex Toy

The Arcwave Ion, a new sex toy from a company called Wow Tech, promises a different kind of male orgasm. They deliver... kind of. BTW, friends, this review is NSFW. Wow Tech makes the disgustingly-named Womanizer, a popular ladies toy that uses vibration...

Google Fi starts selling 5G phones from Samsung

Google Fi customers have been able to use unlocked Samsung phones on the MVNO’s network for years, but now those same customers can now buy a Samsung Galaxy device directly from the search giant. On the Fi website, the company has...

Waymo rolls out its driverless robo-taxi service in Arizona

Waymo, the self-driving unit of Alphabet, said Thursday that it’s offering its fully driverless robo-taxis to all customers of its ride-hailing service in Phoenix, Arizona. Previously, the company only afforded its fleet of unmanned...

How to Fix the iOS 14 Bug That Causes Major Battery Drain

Apple’s new iOS 14 has brought iPhone users a trove of wonders. But one cannot have wonders without some bugs. So if you recently noticed that your iPhone seems to suffer massive battery drain after upgrading to iOS 14, we want...

[ad_1]
It’s no secret that some countries have spied on their citizens through innocuous-looking apps, but one effort is more extensive than usual. Check Point Research has discovered (via ZDNet) that Rampant Kitten, an Iranian hacker group that has targeted the country’s political opponents for years, has developed Android malware focused on stealing two-factor authentication codes. It isn’t just focused on any one service, either — it targets Google, Telegram, and other major internet or social services.

The attackers first use a phishing trojan to collect login details, and then try those with the real site. If the victim has two-factor authentication turned on, the newly-reported malware intercepts the incoming SMS messages and quietly sends copies to the intruders.

The code also has tools to grab contacts, text message logs and even microphone audio, but it’s unusually centered around two-factor data. It has so far been found in an app pretending to help Persian speakers in Sweden get driver’s licenses, but it might be available in other apps.

This is an important discovery. Although it’s no secret that likely state-backed groups can get around two-factor requests, it’s difficult to see how those systems work. It also stresses the importance of using two-authentication systems that avoid SMS, such as hardware security keys. SMS is better than nothing, but it’s no longer a deterrent for the most determined intruders — whether they’re pro-government spies or everyday criminals.

[ad_2]

Source link

LEAVE A REPLY

Please enter your comment!
Please enter your name here

Popular

A New Kind of Male Sex Toy

The Arcwave Ion, a new sex toy from a company called Wow Tech, promises a different kind of male orgasm. They deliver... kind of. BTW, friends, this review is NSFW. Wow Tech makes the disgustingly-named Womanizer, a popular ladies toy that uses vibration...

Google Fi starts selling 5G phones from Samsung

Google Fi customers have been able to use unlocked Samsung phones on the MVNO’s network for years, but now those same customers can now buy a Samsung Galaxy device directly from the search giant. On the Fi website, the company has...

Waymo rolls out its driverless robo-taxi service in Arizona

Waymo, the self-driving unit of Alphabet, said Thursday that it’s offering its fully driverless robo-taxis to all customers of its ride-hailing service in Phoenix, Arizona. Previously, the company only afforded its fleet of unmanned...

UK announces more than 10,000 new cases for first time

There were 12,872 new cases, while a further 49 people have died within 28 days of testing positive for Covid-19. However, the government said a technical issue meant some cases this week were not recorded at the time so these were included...

Greenland Melting Fastest Any Time in Last 12,000 Years

Greenland is the biggest island in the world. And the ice sheet that sits atop it is massive. "The pile of ice is so thick it extends more than 10,000 feet above the ocean. And if all that ice were to melt...

More from author

A New Kind of Male Sex Toy

The Arcwave Ion, a new sex toy from a company called Wow Tech, promises a different kind of male orgasm. They deliver... kind of. BTW,...

Google Fi starts selling 5G phones from Samsung

Google Fi customers have been able to use unlocked Samsung phones on the MVNO’s network for years, but now those same customers can now...

Waymo rolls out its driverless robo-taxi service in Arizona

Waymo, the self-driving unit of Alphabet, said Thursday that it’s offering its fully driverless robo-taxis to all customers of...

UK announces more than 10,000 new cases for first time

There were 12,872 new cases, while a further 49 people have died within 28 days of testing positive for Covid-19. However, the government said a...