Security News > 2021 > February > Android Devices Hunted by LodaRAT Windows Malware
A newly discovered variant of the LodaRAT malware, which has historically targeted Windows devices, is being distributed in an ongoing campaign that now also hunts down Android devices and spies on victims.
Along with this, an updated version of LodaRAT for Windows has also been identified; both versions were seen in a recent campaign targeting Bangladesh, researchers said.
While previous versions of LodaRAT contained credential-stealing capabilities that researchers speculated were used for draining victims' bank accounts, these newer versions come with a full roundup of information-gathering commands.
The Android version of the LodaRAT malware, which researchers call "Loda4Android," is "Relatively simple when compared to other Android malware," said researchers.
The underlying command-and-control protocol follows the same design pattern as the Windows version, said researchers - suggesting that the C2 code will be able to handle both versions.
The new version of the LodaRAT that targets Windows systems is version 1.1.8.
News URL
https://threatpost.com/android-devices-lodarat-windows/163769/
Related news
- Hackers use PHP exploit to backdoor Windows systems with new malware (source)
- Android malware uses NFC to steal money at ATMs (source)
- New NGate Android malware uses NFC chip to steal credit card data (source)
- Cybercriminals Deploy New Malware to Steal Data via Android’s Near Field Communication (NFC) (source)
- New Android Malware NGate Steals NFC Data to Clone Contactless Payment Cards (source)
- Windows 11 KB5041587 update adds sharing to Android devices (source)
- SpyAgent Android malware steals your crypto recovery phrases from images (source)
- New Android SpyAgent Malware Uses OCR to Steal Crypto Wallet Recovery Keys (source)
- Beware: New Vo1d Malware Infects 1.3 Million Android-based TV Boxes Worldwide (source)
- New Android Malware 'Ajina.Banker' Steals Financial Data and Bypasses 2FA via Telegram (source)