Minacce · 147 giorni fa
ScarCruft ha ampliato BirdCall da una backdoor desktop a uno strumento di sorveglianza mobile. Questo rompe la consueta supposizione che osservare i client Windows sia sufficiente, perché la stessa esca ora raggiunge anche i telefoni tramite APK trojanizzati installati fuori dall’app store.
4 fonti che coprono questa storia
The Record from Recorded Future
North Korean hackers targeted ethnic Koreans in China with Android ‘BirdCall’ malware
Researchers at cybersecurity firm ESET attributed the campaign to APT37 and said the hackers used a backdoor attached to a suite of card games from a company called Sqgame.
ScarCruft Hacks Gaming Platform to Deploy BirdCall Malware on Android and Windows
ScarCruft spreads BirdCall via sqgame.net since late 2024, targeting Android users, enabling surveillance and data theft.
A rigged game: ScarCruft compromises gaming platform in a supply-chain attack
ESET researchers have investigated an ongoing attack by the ScarCruft APT group that targets the Yanbian region via backdoor-laced Windows and Android games.
ScarCruft hackers push BirdCall Android malware via game platform
The North Korean hacker group APT37 has been delivering an Android version of a backdoor called BirdCall in a supply-chain attack through a video game platform.
Riepilogo fornitore: Microsoft
Part of the PlainSec briefing for 2026-05-07