Cybersecurity researchers have discovered a new malicious “WhatsApp spy mod”, which has attacked messaging platform Telegram users more than 340,000 times in October alone, a new report said on Friday.
According to IANS, this malware mainly targets users who communicate in Arabic and Azeri, with victims identified globally.
As users turn to third-party mods for popular messaging apps to add extra features, the researchers explained that some of these mods, while enhancing functionality, also come with hidden malware.
According to them, the new WhatsApp mod offers not only additions like scheduled messages and customisable options, but it also contains a malicious spyware module.
The modified WhatsApp client’s manifest file includes suspicious components (a service and a broadcast receiver) not present in the original version.
The receiver initiates a service, launching the spy module when the phone is powered on or charging.
Once activated, the malicious implant sends a request with device information to the attacker’s server.
This data covers IMEI, phone number, country and network codes, and more.
It also transmits the victim’s contacts and account details every five minutes as well as able to set up microphone recordings and exfiltrate files from external storage, the report said.
The highest attack rates were recorded in Azerbaijan, Saudi Arabia, Yemen, Turkey, and Egypt. While the preference is for Arabic and Azerbaijani-speaking users, it also affects people from the US, Russia, the UK, Germany, and other countries.
To stay safe, experts recommend using official marketplaces, downloading apps and software from reputable and official sources, and avoiding third-party app stores, as the risk they may host malicious or compromised apps is higher.
“The spread of malicious mods through popular third-party platforms highlights the importance of using official IM clients. However, if you need some extra features not present in the original client, you should consider employing a reputable security solution before installing third-party software, as it will protect your data from being compromised,” said Dmitry Kalinin, a security expert at Kaspersky.
Govt. not considering rules for use of AI in filmmaking: Murugan
DTH revenue slide to ease to 3–4% this fiscal year: Report
At Agenda Aaj Tak, Aamir, Jaideep Ahlawat dwell on acting, Dharam
JioHotstar to invest $444mn over 5 years in South Indian content
Standing firm, TRAI rejects DoT views on satcom spectrum fee
Diljit Dosanjh wraps shoot for untitled Imtiaz Ali film
‘Bhabiji Ghar Par Hai 2.0’ to return with comedy, chaos, a supernatural twist
BBC names Bérangère Michel as new Group CFO
‘Border 2’ teaser to be unveiled on Vijay Diwas
CNN-News18 Rahul Shivshankar takes editorial charge 


