Close Menu
  • Start
  • Celebrities
  • Music
  • Influencers
  • Tendencies
  • Exclusives
  • Business & Brands
  • TwinH
  • Spanish
What's Hot

Prime Day Air Fryer Deals: Shop Instant Pot, Ninja, and More

Dyson’s best Prime Day deals: discounts on Dyson V12 Detect Slim and Supersonic

10+ Prime Day vacuum cleaner deals carefully selected by professional vacuum testers

Facebook X (Twitter) Instagram
  • Home
  • About The FYMOUS
  • Advertising / Promotion
  • Contact
  • DMCA
  • Privacy Policy
  • Terms
  • Publish News
Facebook X (Twitter) Instagram
FYMOUS News
  • Start
  • Celebrities
  • Music
  • Influencers
  • Tendencies
  • Exclusives
  • Business & Brands
  • TwinH
  • Spanish
FYMOUS News
Home » Android spyware disguised as an Alpine Quest app targets Russian military equipment
Celebrities

Android spyware disguised as an Alpine Quest app targets Russian military equipment

By April 23, 2025No Comments3 Mins Read
Share Facebook Twitter Pinterest Telegram LinkedIn Tumblr Email Copy Link
Follow Us
Google News Flipboard
Share
Facebook Twitter LinkedIn Pinterest Email Copy Link

April 23, 2025Ravi LakshmananSpyware/Mobile Security

Android spyware

Cybersecurity researchers have revealed that Russian military personnel are targets for a new malicious campaign that distributes Android Spyware in the guise of Alpine Quest Mapping software.

“The attacker will hide this Trojan within the modified alpine est mapping software and distribute it in a variety of ways, including one of the Russian Android app catalogs,” Doctor Web said in its analysis.

The Trojan horse is found to be built into older versions of the software and is propagated as a freely available variant of the Alpine Quest Pro, a highly functional program.

The Russian cybersecurity vendor also observed a malware called Android.spy.1292.origin, saying it was distributed in the form of APK files via fake telegraph channels.

Cybersecurity

Threat Actors first provided a link to download the app to one of the Russian app catalogs via the Telegram Channel, but the Trojanized version was later distributed directly as an APK as an app update.

What is noteworthy about the attack campaign is that Russian soldiers take advantage of the fact that alpine ests are used by russian soldiers in special military operations zones.

Once installed on an Android device, apps with malware look and function similar to the original app, stay undetected for a long time, collecting sensitive data while collecting sensitive data.

Current date and geolocation information for mobile phone numbers and their accounts’ contact lists Saved files, and app version

In addition to sending victim locations every time you change to Telegram Bot, Spyware supports the ability to download and run additional modules that can remove files sent via Telegram and WhatsApp, especially files of interest.

Android spyware

“Android.spy.1292.Origin not only monitors user locations, but also hijacks sensitive files,” Doctor Web said. “In addition, that functionality can be extended via downloading new modules, allowing you to perform a spectrum of malicious tasks.”

To mitigate the risk poses by such threats, we recommend downloading Android apps only from the reliable app market and avoiding downloading paid versions of the software from suspicious sources.

The Russian organization targeted by the new Windows Backdoor

The disclosure reveals that Kaspersky has revealed that various large Russian organisations are being targeted by sophisticated backdoors by decorating them as updates to secure networking software called VIPNET, across government, finance and industrial sectors.

Cybersecurity

“The backdoor targets computers connected to the VIPNET network,” the company said in its preliminary report. “The backdoor was distributed within the LZH archive, which has a structure typical of updating the software product in question.”

Residing in the archive is a malicious executable (“msinfo32.exe”) that acts as a loader of the encrypted payload contained in the file.

“The loader processes the contents of the file to load the backdoor into memory,” says Kaspersky. This backdoor is versatile. It can connect to the C2 server via TCP, allowing an attacker to steal files from an infected computer, launching especially malicious components. ”

Did you find this article interesting? Follow us on Twitter and LinkedIn to read exclusive content you post.

Source link

Follow on Google News Follow on Flipboard
Share. Facebook Twitter Pinterest LinkedIn Tumblr Email Copy Link
Previous ArticleEU slaps Meta, Apple fines nearly $800 million Technology News
Next Article Ongoing Manhunt in Kashmir after fatal attack on tourists | Conflict News

Related Posts

Zendaya styles her ‘damp bixie’ in Berlin

June 22, 2026

Hailey Bieber debuts Skims campaign with Everyday Cotton

June 22, 2026

Reese Witherspoon sports Chanel on ‘Elle’ promotional tour

June 22, 2026
Add A Comment
Leave A Reply Cancel Reply

Latest Posts

Prime Day Air Fryer Deals: Shop Instant Pot, Ninja, and More

Dyson’s best Prime Day deals: discounts on Dyson V12 Detect Slim and Supersonic

10+ Prime Day vacuum cleaner deals carefully selected by professional vacuum testers

Beyoncé reveals how Blue Ivy influenced Jay-Z’s hair journey in new clip

Trending Posts

Beyoncé reveals how Blue Ivy influenced Jay-Z’s hair journey in new clip

June 22, 2026

Olivia Rodrigo explains why jealousy is often featured in her songs

June 22, 2026

Zendaya styles her ‘damp bixie’ in Berlin

June 22, 2026

Subscribe to News

Subscribe to our newsletter and never miss our latest news

Please enable JavaScript in your browser to complete this form.
Loading

Welcome to The FYMOUS, a modern digital media platform dedicated to celebrities, artists, influencers, brands, entertainment culture, and the growing TwinH ecosystem.

We bring audiences closer to the people, stories, trends, and collaborations shaping today’s culture. From exclusive celebrity news and music releases to influencer highlights, brand partnerships, and TwinH activations, The FYMOUS delivers engaging content designed for the next generation of digital audiences.

Castilla-La Mancha Ignites Innovation: fiveclmsummit Redefines Tech Future

Local Power, Health Innovation: Alcolea de Calatrava Boosts FiveCLM PoC with Community Engagement

The Future of Digital Twins in Healthcare: From Virtual Replicas to Personalized Medical Models

Human Digital Twins: The Next Tech Frontier Set to Transform Healthcare and Beyond

Facebook X (Twitter) Instagram Pinterest YouTube
  • Home
  • About The FYMOUS
  • Advertising / Promotion
  • Contact
  • DMCA
  • Privacy Policy
  • Terms
  • Publish News
© 2026 news.fyself. Designed by by fyself.

Type above and press Enter to search. Press Esc to cancel.