{"id":542,"date":"2019-10-28T13:40:05","date_gmt":"2019-10-28T13:40:05","guid":{"rendered":"https:\/\/cybersecuritynews.com\/?p=542"},"modified":"2019-10-28T13:40:05","modified_gmt":"2019-10-28T13:40:05","slug":"apt-hackers","status":"publish","type":"post","link":"https:\/\/cybersecuritynews.com\/apt-hackers\/","title":{"rendered":"State-Sponsored APT Hackers From China, North Korea, Iran Focusing to Develop Android &#038; iOS Mobile Malware"},"content":{"rendered":"\n<p>Mobile threats emerge as mobile devices become part of our day to day life. Exploiting mobile devices gives all-in-one means to targeted users&#8217; sensitive data.<\/p>\n\n\n\n<p>By hijacking mobile<a rel=\"noreferrer noopener\" aria-label=\"mobile attackers (opens in a new tab)\" href=\"https:\/\/gbhackers.com\/keep-your-mobile-safe-from-cyber-security-threats\/\" target=\"_blank\">, attackers<\/a> can gain access to various sensitive information such as user location, contacts, email, texts, and instant messaging apps data and other files.<\/p>\n\n\n\n<p>Most of the high profile and large scale cyber attacks are mostly launched by different APT groups from various countries, especially China, Iran, Russia, North Korea. <\/p>\n\n\n\n<p>&#8220;Researchers observed these APT groups pivot to traditional foreign intelligence and\/or economic espionage targets. This suggests a more mature, un-siloed and collaborative effort inside different government entities where tools, infrastructure, and intelligence are being shared. <\/p>\n\n\n\n<h2 class=\"wp-block-heading\"><strong>State-sponsored APT Groups Mobile Malware <\/strong><\/h2>\n\n\n\n<p>New research from BlackBerry researchers details &#8220;some already known, ongoing, targeted operations and reveal new intelligence and connections that fill in existing gaps in previously published research.&#8221;<\/p>\n\n\n\n<p>The report highlights the tactics and strategies used by threat actor groups to implant mobile malware on targeted devices.<\/p>\n\n\n\n<h3 class=\"wp-block-heading\"><strong>Strategic Assessments <\/strong><\/h3>\n\n\n\n<p>Attackers continue to build a strategy to target smartphones used by both companies and individuals. The strategy integrated with traditional desktop malware.<\/p>\n\n\n\n<p>Researchers observed Chinese, Vietnamese, Iranians, North Koreans and other state-backed groups interested in developing mobile malware focused on Android and\/or iOS mobile malware.<\/p>\n\n\n\n<p>Many of the governments interested in spyware to spy on the target users for political purposes and the <a href=\"https:\/\/en.wikipedia.org\/wiki\/Advanced_persistent_threat\" target=\"_blank\" rel=\"noreferrer noopener\" aria-label=\"APT groups  (opens in a new tab)\">APT groups <\/a>revolve with foreign intelligence and\/or economic targets.<\/p>\n\n\n\n<p>The ability of APT of threat groups in developing surveillance tools outplayed the security industry\u2019s ability to detect the malware at the endpoints.<\/p>\n\n\n\n<h3 class=\"wp-block-heading\"><strong>Tactical Aspects<\/strong><\/h3>\n\n\n\n<p>Researchers tracked the recent mobile espionage campaign under APT group WINNTI, the campaign targets various global companies including gaming companies, pharmaceutical giants, industrial manufacturing, chemical companies, and the United States defense industrial base.<\/p>\n\n\n\n<p>Various mobile campaigns connected such as IRON HUSKY, REAVER PWNWIN1 linked to <a href=\"https:\/\/gbhackers.com\/?s=Chinese+state-sponsored+APT\" target=\"_blank\" rel=\"noreferrer noopener\" aria-label=\"Chinese state-sponsored APT (opens in a new tab)\">Chinese state-sponsored APT<\/a>.<\/p>\n\n\n\n<p>Recent Iranian mobile surveillance efforts give a dramatic rise in the sophistication mechanism to deliver Android malware. Infamous North Korea group LAZARUS and SCARCRUFT involved in various cyber-attacks.<\/p>\n\n\n\n<div class=\"wp-block-image\"><figure class=\"alignright is-resized\"><img loading=\"lazy\" decoding=\"async\" src=\"https:\/\/1.bp.blogspot.com\/-ud8YOhnVIRk\/XbbrcC3zPaI\/AAAAAAAAFGE\/MHxWgC_qSWEVZ-WoThFFjLJ98Qi7pYhLgCLcBGAsYHQ\/s1600\/fig1-mobile-malware.jpg\" alt=\"APT\" width=\"696\" height=\"276\"\/><figcaption>                          <strong>Vietnam based OCEANLOTUS group involved in various campaigns since 2014<\/strong><\/figcaption><\/figure><\/div>\n\n\n\n<p>You can find the complete report published by BlackBerry researchers <a rel=\"noreferrer noopener\" aria-label=\"here (opens in a new tab)\" href=\"https:\/\/threatvector.cylance.com\/en_us\/home\/mobile-malware-and-apt-espionage-prolific-pervasive-and-cross-platform.html\" target=\"_blank\">here<\/a>, the show how the Chinese, Vietnamese, Iranians, North Koreans and other state-backed groups view, implement and execute upon their mobile strategies.<\/p>\n\n\n\n<p>&#8220;The mobile space was already under attack for some time. In many regards, mobile surveillance has always been an ingredient of individual nation-state\u2019s APT operations. Attacks on Android and iOS will undoubtedly become more prevalent and blended into traditional desktop-centric operations.&#8221;<\/p>\n\n\n\n<p class=\"has-background has-very-light-gray-background-color\"><strong>Also Read: <\/strong><a href=\"https:\/\/cybersecuritynews.com\/endpoint-security-tools\/\"><strong>10 Best Advanced Endpoint Security Tools of 2019<\/strong><\/a><\/p>\n","protected":false},"excerpt":{"rendered":"<p>Mobile threats emerge as mobile devices become part of our day to day life. Exploiting mobile devices gives all-in-one means to targeted users&#8217; sensitive data. By hijacking mobile, attackers can gain access to various sensitive information such as user location, contacts, email, texts, and instant messaging apps data and other files. Most of the high [&hellip;]<\/p>\n","protected":false},"author":1,"featured_media":0,"comment_status":"open","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"fifu_image_url":"","fifu_image_alt":"","_jetpack_memberships_contains_paid_content":false,"footnotes":""},"categories":[10,9,48],"tags":[73,75,85,88,277],"class_list":{"0":"post-542","1":"post","2":"type-post","3":"status-publish","4":"format-standard","6":"category-cyber-security","7":"category-cyber-attack","8":"category-threats","9":"tag-android","10":"tag-android-malware","11":"tag-apt","12":"tag-apt-hackers","13":"tag-mobile-malware"},"yoast_head":"<!-- This site is optimized with the Yoast SEO Premium plugin v25.7.1 (Yoast SEO v25.7) - https:\/\/yoast.com\/wordpress\/plugins\/seo\/ -->\n<title>APT Hackers Now Focusing to Develop Android &amp; iOS Mobile Malware<\/title>\n<meta name=\"robots\" content=\"index, follow, max-snippet:-1, max-image-preview:large, max-video-preview:-1\" \/>\n<link rel=\"canonical\" href=\"https:\/\/cybersecuritynews.com\/apt-hackers\/\" \/>\n<meta property=\"og:locale\" content=\"en_US\" \/>\n<meta property=\"og:type\" content=\"article\" \/>\n<meta property=\"og:title\" content=\"State-Sponsored APT Hackers From China, North Korea, Iran Focusing to Develop Android &amp; iOS Mobile Malware\" \/>\n<meta property=\"og:description\" content=\"Mobile threats emerge as mobile devices become part of our day to day life. Exploiting mobile devices gives all-in-one means to targeted users&#8217; sensitive data. By hijacking mobile, attackers can gain access to various sensitive information such as user location, contacts, email, texts, and instant messaging apps data and other files. Most of the high [&hellip;]\" \/>\n<meta property=\"og:url\" content=\"https:\/\/cybersecuritynews.com\/apt-hackers\/\" \/>\n<meta property=\"og:site_name\" content=\"Cyber Security News\" \/>\n<meta property=\"article:publisher\" content=\"https:\/\/www.facebook.com\/Hackingtutorialsandnews\" \/>\n<meta property=\"article:author\" content=\"https:\/\/www.facebook.com\/guruba008\" \/>\n<meta property=\"article:published_time\" content=\"2019-10-28T13:40:05+00:00\" \/>\n<meta property=\"og:image\" content=\"https:\/\/1.bp.blogspot.com\/-ud8YOhnVIRk\/XbbrcC3zPaI\/AAAAAAAAFGE\/MHxWgC_qSWEVZ-WoThFFjLJ98Qi7pYhLgCLcBGAsYHQ\/s1600\/fig1-mobile-malware.jpg\" \/>\n<meta name=\"author\" content=\"Guru Baran\" \/>\n<meta name=\"twitter:card\" content=\"summary_large_image\" \/>\n<meta name=\"twitter:creator\" content=\"@guruba008\" \/>\n<meta name=\"twitter:site\" content=\"@The_Cyber_News\" \/>\n<meta name=\"twitter:label1\" content=\"Written by\" \/>\n\t<meta name=\"twitter:data1\" content=\"Guru Baran\" \/>\n\t<meta name=\"twitter:label2\" content=\"Est. reading time\" \/>\n\t<meta name=\"twitter:data2\" content=\"2 minutes\" \/>\n<!-- \/ Yoast SEO Premium plugin. -->","yoast_head_json":{"title":"APT Hackers Now Focusing to Develop Android & iOS Mobile Malware","robots":{"index":"index","follow":"follow","max-snippet":"max-snippet:-1","max-image-preview":"max-image-preview:large","max-video-preview":"max-video-preview:-1"},"canonical":"https:\/\/cybersecuritynews.com\/apt-hackers\/","og_locale":"en_US","og_type":"article","og_title":"State-Sponsored APT Hackers From China, North Korea, Iran Focusing to Develop Android & iOS Mobile Malware","og_description":"Mobile threats emerge as mobile devices become part of our day to day life. Exploiting mobile devices gives all-in-one means to targeted users&#8217; sensitive data. By hijacking mobile, attackers can gain access to various sensitive information such as user location, contacts, email, texts, and instant messaging apps data and other files. Most of the high [&hellip;]","og_url":"https:\/\/cybersecuritynews.com\/apt-hackers\/","og_site_name":"Cyber Security News","article_publisher":"https:\/\/www.facebook.com\/Hackingtutorialsandnews","article_author":"https:\/\/www.facebook.com\/guruba008","article_published_time":"2019-10-28T13:40:05+00:00","og_image":[{"url":"https:\/\/1.bp.blogspot.com\/-ud8YOhnVIRk\/XbbrcC3zPaI\/AAAAAAAAFGE\/MHxWgC_qSWEVZ-WoThFFjLJ98Qi7pYhLgCLcBGAsYHQ\/s1600\/fig1-mobile-malware.jpg","type":"","width":"","height":""}],"author":"Guru Baran","twitter_card":"summary_large_image","twitter_creator":"@guruba008","twitter_site":"@The_Cyber_News","twitter_misc":{"Written by":"Guru Baran","Est. reading time":"2 minutes"},"schema":{"@context":"https:\/\/schema.org","@graph":[{"@type":"NewsArticle","@id":"https:\/\/cybersecuritynews.com\/apt-hackers\/#article","isPartOf":{"@id":"https:\/\/cybersecuritynews.com\/apt-hackers\/"},"author":{"name":"Guru Baran","@id":"https:\/\/cybersecuritynews.com\/#\/schema\/person\/f7f138f8fd41a61bb60151da47730026"},"headline":"State-Sponsored APT Hackers From China, North Korea, Iran Focusing to Develop Android &#038; iOS Mobile Malware","datePublished":"2019-10-28T13:40:05+00:00","mainEntityOfPage":{"@id":"https:\/\/cybersecuritynews.com\/apt-hackers\/"},"wordCount":448,"commentCount":0,"publisher":{"@id":"https:\/\/cybersecuritynews.com\/#organization"},"image":{"@id":"https:\/\/cybersecuritynews.com\/apt-hackers\/#primaryimage"},"thumbnailUrl":"https:\/\/1.bp.blogspot.com\/-ud8YOhnVIRk\/XbbrcC3zPaI\/AAAAAAAAFGE\/MHxWgC_qSWEVZ-WoThFFjLJ98Qi7pYhLgCLcBGAsYHQ\/s1600\/fig1-mobile-malware.jpg","keywords":["Android","Android Malware","APT","APT Hackers","Mobile Malware"],"articleSection":["Cyber Security","Cyberattack News","Threats"],"inLanguage":"en-US","potentialAction":[{"@type":"CommentAction","name":"Comment","target":["https:\/\/cybersecuritynews.com\/apt-hackers\/#respond"]}],"copyrightYear":"2019","copyrightHolder":{"@id":"https:\/\/cybersecuritynews.com\/#organization"}},{"@type":"WebPage","@id":"https:\/\/cybersecuritynews.com\/apt-hackers\/","url":"https:\/\/cybersecuritynews.com\/apt-hackers\/","name":"APT Hackers Now Focusing to Develop Android & iOS Mobile Malware","isPartOf":{"@id":"https:\/\/cybersecuritynews.com\/#website"},"primaryImageOfPage":{"@id":"https:\/\/cybersecuritynews.com\/apt-hackers\/#primaryimage"},"image":{"@id":"https:\/\/cybersecuritynews.com\/apt-hackers\/#primaryimage"},"thumbnailUrl":"https:\/\/1.bp.blogspot.com\/-ud8YOhnVIRk\/XbbrcC3zPaI\/AAAAAAAAFGE\/MHxWgC_qSWEVZ-WoThFFjLJ98Qi7pYhLgCLcBGAsYHQ\/s1600\/fig1-mobile-malware.jpg","datePublished":"2019-10-28T13:40:05+00:00","breadcrumb":{"@id":"https:\/\/cybersecuritynews.com\/apt-hackers\/#breadcrumb"},"inLanguage":"en-US","potentialAction":[{"@type":"ReadAction","target":["https:\/\/cybersecuritynews.com\/apt-hackers\/"]}]},{"@type":"ImageObject","inLanguage":"en-US","@id":"https:\/\/cybersecuritynews.com\/apt-hackers\/#primaryimage","url":"https:\/\/1.bp.blogspot.com\/-ud8YOhnVIRk\/XbbrcC3zPaI\/AAAAAAAAFGE\/MHxWgC_qSWEVZ-WoThFFjLJ98Qi7pYhLgCLcBGAsYHQ\/s1600\/fig1-mobile-malware.jpg","contentUrl":"https:\/\/1.bp.blogspot.com\/-ud8YOhnVIRk\/XbbrcC3zPaI\/AAAAAAAAFGE\/MHxWgC_qSWEVZ-WoThFFjLJ98Qi7pYhLgCLcBGAsYHQ\/s1600\/fig1-mobile-malware.jpg"},{"@type":"BreadcrumbList","@id":"https:\/\/cybersecuritynews.com\/apt-hackers\/#breadcrumb","itemListElement":[{"@type":"ListItem","position":1,"name":"Home","item":"https:\/\/cybersecuritynews.com\/"},{"@type":"ListItem","position":2,"name":"State-Sponsored APT Hackers From China, North Korea, Iran Focusing to Develop Android &#038; iOS Mobile Malware"}]},{"@type":"WebSite","@id":"https:\/\/cybersecuritynews.com\/#website","url":"https:\/\/cybersecuritynews.com\/","name":"Cyber Security News","description":"World&#039;s #1 Premier Cybersecurity and Hacking News Portal","publisher":{"@id":"https:\/\/cybersecuritynews.com\/#organization"},"potentialAction":[{"@type":"SearchAction","target":{"@type":"EntryPoint","urlTemplate":"https:\/\/cybersecuritynews.com\/?s={search_term_string}"},"query-input":{"@type":"PropertyValueSpecification","valueRequired":true,"valueName":"search_term_string"}}],"inLanguage":"en-US"},{"@type":"Organization","@id":"https:\/\/cybersecuritynews.com\/#organization","name":"Cyber Security News","url":"https:\/\/cybersecuritynews.com\/","logo":{"@type":"ImageObject","inLanguage":"en-US","@id":"https:\/\/cybersecuritynews.com\/#\/schema\/logo\/image\/","url":"https:\/\/cybersecuritynews.com\/wp-content\/uploads\/2021\/06\/Cyber-security.jpg","contentUrl":"https:\/\/cybersecuritynews.com\/wp-content\/uploads\/2021\/06\/Cyber-security.jpg","width":200,"height":200,"caption":"Cyber Security News"},"image":{"@id":"https:\/\/cybersecuritynews.com\/#\/schema\/logo\/image\/"},"sameAs":["https:\/\/www.facebook.com\/Hackingtutorialsandnews","https:\/\/x.com\/The_Cyber_News","https:\/\/www.linkedin.com\/company\/cybersecurity-news\/"]},{"@type":"Person","@id":"https:\/\/cybersecuritynews.com\/#\/schema\/person\/f7f138f8fd41a61bb60151da47730026","name":"Guru Baran","image":{"@type":"ImageObject","inLanguage":"en-US","@id":"https:\/\/cybersecuritynews.com\/#\/schema\/person\/image\/","url":"https:\/\/secure.gravatar.com\/avatar\/72f86da0bb72b6886d25f0ef0c881daba3a98356bc44f916f8d3a62c9e856579?s=96&d=mm&r=g","contentUrl":"https:\/\/secure.gravatar.com\/avatar\/72f86da0bb72b6886d25f0ef0c881daba3a98356bc44f916f8d3a62c9e856579?s=96&d=mm&r=g","caption":"Guru Baran"},"description":"Gurubaran is the Co-Founder and Editor-in-Chief of CyberSecurityNews.com, specializing in vulnerability analysis, malware research, ransomware, and computer forensics.","sameAs":["https:\/\/cybersecuritynews.com","https:\/\/www.facebook.com\/guruba008","https:\/\/www.linkedin.com\/in\/gurubaran-cyberwrites\/","https:\/\/x.com\/guruba008"],"url":"https:\/\/cybersecuritynews.com\/author\/guru\/"}]}},"jetpack_featured_media_url":"","jetpack_sharing_enabled":true,"_links":{"self":[{"href":"https:\/\/cybersecuritynews.com\/wp-json\/wp\/v2\/posts\/542","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/cybersecuritynews.com\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/cybersecuritynews.com\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/cybersecuritynews.com\/wp-json\/wp\/v2\/users\/1"}],"replies":[{"embeddable":true,"href":"https:\/\/cybersecuritynews.com\/wp-json\/wp\/v2\/comments?post=542"}],"version-history":[{"count":0,"href":"https:\/\/cybersecuritynews.com\/wp-json\/wp\/v2\/posts\/542\/revisions"}],"wp:attachment":[{"href":"https:\/\/cybersecuritynews.com\/wp-json\/wp\/v2\/media?parent=542"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/cybersecuritynews.com\/wp-json\/wp\/v2\/categories?post=542"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/cybersecuritynews.com\/wp-json\/wp\/v2\/tags?post=542"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}