Track Common Adversary Tasks Performed Using Android/Chuli.A

 





To know more about it, you can go through my detailed document by clicking here







Overview

Androi/Chuli.A is an Android malware especially designed to infiltrate some Tibetan Activists and the other high-profile human rights activists via a spearphishing email with an attachment. It can steal the infected device's information to send it to the server, and this information may include:
  1. Contacts data
  2. GPS coordinates
  3. Phone call logs
  4. Stored SMS messages
  5. Network communication
  6. Hardware controls
  7. System tools, etc.


Tactics & Techniques

This malware can enter into your system via various methods, such as:
  • Installing apps from unknown or unverified download sites. 
  • Exploitation of vulnerabilities.
  • Being dropped or download by another malware, etc.
After its successful installation as well as launching, the malware can easily compromise the device as well as its connected network.

Prevention

You can easily protect your devices from compromising, by configuring and enabling the following features:
  • Web protection
  • Vulnerability assessment
  • Malware and phishing reports
  • Privacy controls










To know more about it, you can go through my detailed document by clicking here


















































Comments

Popular posts from this blog

Query, Visualize, & Monitor Data in Azure Sentinel

Planning for Implementing SAP Solutions on Azure (Part 2 of 5)

Work with String Data Using KQL Statements