Threat Intelligence Brief
Curated summary with source attribution
Source: globalbankingandfinance.com
Threat Risk: Medium
Victim: Dissidents, activists, and journalists
Incident: Deployment of CHOSEN BRICK spyware via mobile spear-phishing
Impact: Unauthorized access and theft of emails, messages, and sensitive information
Attacker: Iranian state-linked actors
Analysis: The campaign utilizes the CHOSEN BRICK spyware family to exfiltrate sensitive data from mobile devices. Attackers leverage social engineering through popular messaging apps like WhatsApp and Telegram to deliver malicious payloads via spear-phishing. This indicates a sophisticated focus on monitoring high-value targets through their personal communication channels.
Recommendations: Enable multi-factor authentication on all messaging platforms; Exercise extreme caution with unsolicited links in WhatsApp and Telegram; Ensure mobile operating systems and applications are fully updated
Source: Global Banking and Finance / Reuters
Editorial note: this post summarizes third-party reporting and links to the original source.
View Original Source