Kaspersky security team exposed SparkKitty’s malicious Trojan, pretending to be a TikTok app to steal screenshots of user photo albums

Team Passionategeekz
2 Min Read

Also See


Free Article Submission
SUBMIT YOUR ARTICLE HERE FOR FREE

Passionategeekz On June 24, the Kaspersky security team exposed a malicious Trojan called SparkKitty. The corresponding Trojan disguised itself as a TikTok application. After the victim installed the corresponding copycat software, the Trojan would steal all the photos screenshots in the album of his device.

Kaspersky said SparkKitty is an evolutionary version of the early malware SparkCat.It has been active since February 2024the Trojan has built-in OCR technology, which can identify sensitive information such as ID cards, bank cards, private chat records, etc. in the victim’s album.

In addition, the Trojan also steals the “seed phrase” of the user’s digital currency wallet. As a reference, when users use major digital currency apps to create virtual wallets, they usually get a set of mnemonic words containing 12 to 24 words, which is the only way to restore wallet access. For the sake of convenience, some users will save screenshots of these phrases to their mobile phone album. SparkKitty steals the victim’s digital property by stealing screenshots and using OCR technology to identify the characters in the picture, finding these mnemonic words.

Advertising statement: The external redirect links (including, not limited to, hyperlinks, QR codes, passwords, etc.) contained in the article are used to convey more information and save selection time. The results are for reference only. All articles from Passionategeekz include this statement.



Source link


Discover more from PassionateGeekz

Subscribe to get the latest posts sent to your email.

Share This Article
Leave a Comment

Leave a Reply

Discover more from PassionateGeekz

Subscribe now to keep reading and get access to the full archive.

Continue reading