AI Voice Generator App Used to Drop Gipy Malware
ID: 97c40e0d-df40-5762-8000-8df870346ac1
STIX ID: report--97c40e0d-df40-5762-8000-8df870346ac1
Feed Name: Dark Reading
Threat Score
Kaspersky researchers uncovered the Gipy campaign (first seen in early 2023) that lures victims in Germany, Russia, Spain, and Taiwan with a fake AI voice-changing app; the app installs an infostealer that also delivers password-protected GitHub archives containing numerous malware families (Lumma, RedLine, RisePro, Loli, Apocalypse ClipBanker, Corona cryptominer, DCRat, RADXRat, TrueClient) enabling credential theft, cryptomining, and backdoor access.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
