The FireScam malware, masquerading as a “Telegram Premium” application, targets Android users through phishing websites that mimic authentic app stores. It pilfers sensitive data, tracks device activity, and gains persistence through advanced permissions. The malware relies on social engineering and phishing tactics for exploitation and avoid detection using obfuscation and sandbox detection methods.
Novel PLAYFULGHOST infostealer emerges | SC Media
The PLAYFULGHOST information-stealing malware is being spread through phishing and SEO poisoning attacks, according to Google’s Managed Defense team. The malware, similar to Gh0st RAT,