VexTrio TDS System Developing Several Malicious Apps Mimic as VPNs to Publish in Google Play and App Store
ID: 68bc3a17-1ff6-5f42-a33b-f041b12c32d1
STIX ID: report--68bc3a17-1ff6-5f42-a33b-f041b12c32d1
Feed Name: cybersecurityNews.com
Threat Score
VexTrio, a long-standing cybercriminal traffic distribution system, has expanded from web-based scams into distributing malicious mobile apps via app stores that masquerade as VPNs and system utilities; these apps perform user profiling, communicate with C2 using encrypted channels, employ obfuscation and anti-analysis checks, and deliver notification-hijacked fraudulent ads and scams integrated with VexTrio's TDS.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
