A hacking group has used a specific malware variant for the last three years to spy on “foreign diplomatic entities” operating inside Iran, advancing its reputation as an espionage group that previously targeted telecoms throughout the Middle East. The Chafer cyber espionage group deployed malware known as Remexi to steal user credentials, record keystrokes, browser history and take covert screenshots on targeted machines through late 2018, according to Kaspersky research published Wednesday. Few specifics are known about the operation, including concrete details on how the malware spreads. However Kaspersky’s new research builds on previous Symantec findings which determined that Chafer attacked telecommunication companies, an airline in the Middle East and at least one business in the U.S. The group now appears to be targeting Windows machines located inside Iran, Kaspersky said this week. “The vast new majority of the users targeted by this new variant of Remexi appear to have […]
The post ‘Chafer’ group advances espionage tactics by hacking Windows machines in Middle East appeared first on CyberScoop.
Continue reading ‘Chafer’ group advances espionage tactics by hacking Windows machines in Middle East→