Close Menu
Indo Guard OnlineIndo Guard Online
  • Home
  • Cyber Security
  • Risk Management
  • Travel
  • Security News
  • Tech
  • More
    • Data Privacy
    • Data Protection
    • Global Security
What's Hot

ASUS PATCHES DRIVERHUB RCE DISTRUCTIONS OPERATED THROUGH HTTP AND CONTROL .INI FILE

May 12, 2025

Why the exposed powers remain units – and how to change

May 12, 2025

AI fake tools used to distribute malicious software with catching, focusing 62,000+ via lure on Facebook

May 12, 2025
Facebook X (Twitter) Instagram
Facebook X (Twitter) Instagram YouTube
Indo Guard OnlineIndo Guard Online
Subscribe
  • Home
  • Cyber Security
  • Risk Management
  • Travel
  • Security News
  • Tech
  • More
    • Data Privacy
    • Data Protection
    • Global Security
Indo Guard OnlineIndo Guard Online
Home » Pro-Housite group targets Yemeni aid organizations with Android spyware
Global Security

Pro-Housite group targets Yemeni aid organizations with Android spyware

AdminBy AdminJuly 19, 2024No Comments2 Mins Read
Share
Facebook Twitter LinkedIn Pinterest Email Copy Link


July 19, 2024Hacker newsMalware / Mobile Security

An alleged pro-Houthi threat group targeted at least three humanitarian organizations in Yemen with Android spyware designed to gather sensitive information.

These attacks are associated with a cluster of activities codenamed OilAlfabrings with it a new set of mobile malware that comes with its own support infrastructure, Insikt Group Recorded Future said.

The current campaign targets CARE International, the Norwegian Refugee Council (NRC) and the Saudi King Salman Center for Humanitarian Aid and Relief.

“The OilAlpha threat group is likely active and carrying out targeted activities against humanitarian and human rights organizations operating in Yemen and possibly throughout the Middle East,” the cybersecurity company said.

Cyber ​​security

OilAlpha was documented for the first time in May 2023 in connection with an espionage campaign targeting development, humanitarian, media and non-governmental organizations in the Arabian Peninsula.

These attacks used WhatsApp to distribute malicious Android APK files, pretending to be associated with legitimate organizations such as UNICEF, which eventually led to the deployment of a malware called SpyNote (aka SpyMax).

Spyware for Android

The latest wave, discovered in early June 2024, includes apps claiming to be linked to humanitarian aid programs and impersonating organizations such as CARE International and NRCboth of which have an active presence in Yemen.

Once installed, these applications, which contain the SpyMax Trojan, request intrusive permissions, thereby facilitating the theft of the victim’s data.

OilAlpha’s operations also include a credential harvesting component that uses a bunch of fake login pages impersonating these organizations to collect user login information. The purpose is suspected to be espionage by accessing accounts associated with the affected organizations.

“Houthi fighters have consistently attempted to restrict the movement and delivery of international humanitarian aid and have profited from the taxation and resale of aid supplies,” Recorded Future reported.

“One possible explanation for the observed cyber targeting is that it is intelligence gathering to aid efforts to control who receives aid and how it is delivered.”

The development comes weeks after Lookout implicated the Houthi threat actor in another surveillance software operation that provides an Android data collection tool called GuardZoo on targets in Yemen and other countries of the Middle East.

Did you find this article interesting? This article is from one of our respected partners. Follow us Twitter  and LinkedIn to read more exclusive content we publish.





Source link

Share. Facebook Twitter Pinterest LinkedIn Tumblr Email Copy Link
Admin
  • Website

Related Posts

ASUS PATCHES DRIVERHUB RCE DISTRUCTIONS OPERATED THROUGH HTTP AND CONTROL .INI FILE

May 12, 2025

Why the exposed powers remain units – and how to change

May 12, 2025

AI fake tools used to distribute malicious software with catching, focusing 62,000+ via lure on Facebook

May 12, 2025

Germany closes the exp.

May 10, 2025

Google pays $ 1.375 for unauthorized tracking and biometric data collection

May 10, 2025

Ottercookie V4 adds detection of VM and Chrome, Metamask Centive Chardenties

May 9, 2025
Add A Comment
Leave A Reply Cancel Reply

Loading poll ...
Coming Soon
Do You Like Our Website
: {{ tsp_total }}

Subscribe to Updates

Get the latest security news from Indoguardonline.com

Latest Posts

ASUS PATCHES DRIVERHUB RCE DISTRUCTIONS OPERATED THROUGH HTTP AND CONTROL .INI FILE

May 12, 2025

Why the exposed powers remain units – and how to change

May 12, 2025

AI fake tools used to distribute malicious software with catching, focusing 62,000+ via lure on Facebook

May 12, 2025

Germany closes the exp.

May 10, 2025

Google pays $ 1.375 for unauthorized tracking and biometric data collection

May 10, 2025

Ottercookie V4 adds detection of VM and Chrome, Metamask Centive Chardenties

May 9, 2025

Breaking: 7000-Delicious Proxy using iol Systems Systems

May 9, 2025

Malicious NPM packages infect 3200+ users cursor with back, theft of credentials

May 9, 2025
About Us
About Us

Provide a constantly updating feed of the latest security news and developments specific to Indonesia.

Facebook X (Twitter) Pinterest YouTube WhatsApp
Our Picks

ASUS PATCHES DRIVERHUB RCE DISTRUCTIONS OPERATED THROUGH HTTP AND CONTROL .INI FILE

May 12, 2025

Why the exposed powers remain units – and how to change

May 12, 2025

AI fake tools used to distribute malicious software with catching, focusing 62,000+ via lure on Facebook

May 12, 2025
Most Popular

In Indonesia, crippling immigration ransomware breach sparks privacy crisis

July 6, 2024

Why Indonesia’s Data Breach Crisis Calls for Better Security

July 6, 2024

Indonesia’s plan to integrate 27,000 govt apps in one platform welcomed but data security concerns linger

July 6, 2024
© 2025 indoguardonline.com
  • Home
  • About us
  • Contact us
  • Privacy Policy

Type above and press Enter to search. Press Esc to cancel.