TTPwire Vol. 1 · MITRE ATT&CK·Tagged

← All stories

Bleeping Computer

Telegram Mini Apps abused for crypto scams, Android malware delivery

Lawrence Abrams · 3 days ago · Read original ↗

ATT&CK techniques detected

2 predictions
T1566.002Spearphishing Link
84%
"##end infrastructure with different domains and telegram bots. some of the brands impersonated in this campaign include apple, coca - cola, disney, ebay, ibm, moon pay, nvidia, youku, researchers say the activity uses a shared backend, where multiple phishing domains use the same…"
T1566.003Spearphishing via Service
31%
"##end infrastructure with different domains and telegram bots. some of the brands impersonated in this campaign include apple, coca - cola, disney, ebay, ibm, moon pay, nvidia, youku, researchers say the activity uses a shared backend, where multiple phishing domains use the same…"

Summary

Cybersecurity researchers have uncovered a large-scale fraud operation that uses Telegram's Mini App feature to run crypto scams, impersonate well-known brands, and distribute Android malware. [...]