GuardZoo Android Malware Targets Military via WhatsApp
ID: 7c534516-3df7-5be7-ab8c-6addb121a5e2
STIX ID: report--7c534516-3df7-5be7-ab8c-6addb121a5e2
Feed Name: Cyber Press
Threat Score
### Executive Summary GuardZoo is an Android RAT active since October 2019 that uses military-themed social engineering via WhatsApp and browser downloads to target Middle Eastern military personnel, exfiltrating photos, GPS/location files, documents and device metadata; it supports dynamic DEX loading, persistence mechanisms, and a custom ASP.NET C2 server, and researchers link it to Houthi actors with over 450 identified victims across Yemen, Saudi Arabia and nearby countries.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
