Skip to content
TechVibe

TechVibe

  • Home
  • Web3
  • Technology
  • Health
  • Business
  • Sports
    • Cricket
    • Football
  • Press Release
  • Contact Us
  • Toggle search form

Rephrase the title:China-Backed Hackers Planted Spyware on Major Application Updates Since 2018

Posted on January 26, 2024 By Haley Bennett

Rephrase and rearrange the whole content into a news article. I want you to respond only in language English. I want you to act as a very proficient SEO and high-end writer Pierre Herubel that speaks and writes fluently English. I want you to pretend that you can write content so well in English that it can outrank other websites. Make sure there is zero plagiarism.:

Legitimate software updates has reportedly been compromised by China hackers by implanting spyware in major applications against companies and users from the United Kingdom, Japan, and China since 2018.

The cybergroup behind this new spyware, coined as Blackwood, is believed to be linked with China and has been discovered to be using software upgrades to install spyware that researchers have called as the NSPX30. The virus has been spread by inherent methods found in Tencent QQ, Sogou Pinyin, and WPS Office applications. 

Lapsus$ Operations Are Ongoing? Bad Actors Might Still Be Active in Hacking Despite Recent UK Arrest

(Photo : Jake Schumacher from Unsplash)
According to the reports, the Lapsus$ members are still hacking despite the recent arrest done by the UK police.

The virus itself, as per the researchers from ESET, is used to deliver a set of droppers, installers, loaders, and orchestrators. Hacking tools that are generally used by cybercriminals to install even more spyware and various malware into a device, once successfully integrated into the software.

A backdoor tool is also stated to be one of the capabilities of the NSPX30 spyware, meaning hackers are able to gain high level user access within the compromised systems. Specifically, hackers can gather file metadata, stop particular programs, take screenshots, record keystrokes, and even delete itself from the device.

Read Also: British Spy Agency Warns AI Will Help Hackers Increase Cyberattacks 

Advanced Spyware

Additionally, reports indicates that contact lists and conversation logs from Tencent QQ, WeChat, Telegram, Skype, CloudChat, RaidCall, YY, and AliWangWang may be obtained using the backdoor. 

With the ability to conceal its infrastructure through packet interception, NSPX30 reportedly exhibits a remarkable level of technological innovation and allows for covert operations. 

The victims of the newly-dicovered spyware is said to be unnamed people in China and Japan, an unidentified Chinese speaker linked to the network of a prominent public research university in the UK, a sizable manufacturing and trading company in China, and the Chinese branch of a Japanese corporation, revealed after subsequent investigations. 

Reports noted that that attackers frequently attempted to re-enter a user’s system after losing access, suggesting focused, purposeful attacks, directed to specific individuals and businesses. Worryingly, this new spyware is also said to be capable of bypassing Chinese anti-malware software.

China-Linked Blackwood

Active since at least 2018, Blackwood is an APT organization linked with China that conducts cyber espionage targeting Chinese and Japanese people and businesses. 

A separate report notes that Blackwood most likely shares access with other Chinese APT organizations, since it witnessed the system of one firm being attacked by toolkits connected with numerous actors, e.g. LittleBear, LuoYu, and evasive Panda. 

Bleeping Computer notes that it is unclear exactly what technique allows Blackwood to intercept the traffic in the first place but noted that ESET says would be feasible to use an implant on susceptible equipment like routers or gateways within the targets’ networks.

In addition to offering defenders a list of symptoms of compromise they may employ to safeguard their environment, ESET’s research contains comprehensive technical data about the virus and its mechanism of operation. 

Related Article: Researchers Discover 26 Billion Records Leaked, LinkedIn, Dropbox, Twitter Users’ Data at Risk 

Written by Aldohn Domingo

ⓒ 2023 TECHTIMES.com All rights reserved. Do not reproduce without permission.

Haley Bennett

I have over 10 years of experience in the cryptocurrency industry and I have been on the list of the top authors on LinkedIn for the past 5 years. I have a wealth of knowledge to share with my readers, and my goal is to help them navigate the ever-changing world of cryptocurrencies.

Health Tags:Blackwood, China Hack, China Hackers, Computer hacking, Cyber Attack, Cyberattack, Cyberattacks, Cybercrime, Cybercriminals, Cyberhacking, Cybersecurity, Hacking, hacking group, Malware, Malware Attack, Skype, spyware, Tencent, Update Hack, WPS Office

Post navigation

Previous Post: Rephrase the title:Facebook, TikTok, X Collect Data When Sending iPhone Push Notifications
Next Post: Rephrase the title:Why did Shoaib Malik leave the BPL? Is the ex-Pakistan international being investigated for match-fixing?

Related Posts

Rephrase the title:MWC 2024: Vodafone’s CEO Advocates for Regulatory Reform and Industry-Wide Collaboration Health
Rephrase the title:Man Who Received 217 COVID-19 Vaccinations Offers Himself for a Study — Here’s What Happened to Him Health
Rephrase the title:Pilot Sparks Outrage by Wearing Apple Vision Pro Headset While Flying Health
Rephrase the title:CISA Systems Hacked: Ivanti Vulnerabilities Exploited, Urgent Security Measures Advised Health
Rephrase the title:Tesla Upgrades to UWB on iOS to Bring Better Phone Key Connectivity, What EVs to Get Feature? Health
Rephrase the title:Microsoft Copilot for Android can be the Default AI Assistant to Replace Google or Bixby Health

Recent Posts

  • Robin Open Social-Fi: Revolutionizes Gaming with Innovative Integration and Global Partnerships
  • $GUMMY Set to Launch New Meta On Staking on Solana
  • BinoStake.io: Transforming Crypto Investments On BNB Chain with Liquid Staking Solutions
  • Mocaverse to Develop Decentralized Social Layer
  • Expansion of Web3 Fueled by Hong Kong’s Financial Secretary

Categories

  • Business
  • Cricket
  • Football
  • Health
  • Press Release
  • Technology
  • Web3

About Us

Welcome to TechVibe9, where the rhythm of technology meets innovation! We are a group of tech enthusiasts on a mission to uncover and showcase the latest in the tech world.

Mail Us : support@techvibe9.com

Latest Post

  • Robin Open Social-Fi: Revolutionizes Gaming with Innovative Integration and Global Partnerships
  • $GUMMY Set to Launch New Meta On Staking on Solana
  • BinoStake.io: Transforming Crypto Investments On BNB Chain with Liquid Staking Solutions

Helpful Links

  • About Us
  • Contact Us
  • Privacy Policy
  • Terms & Conditions

Copyright © TechVibe9

Powered by PressBook Masonry Dark