Houthi-Aligned APT Targets Mideast Militaries With 'GuardZoo' Spyware
ID: bd01afb2-52cb-5403-a86a-8f846915a20b
STIX ID: report--bd01afb2-52cb-5403-a86a-8f846915a20b
Feed Name: Dark Reading
Threat Score
Lookout discovered GuardZoo, an Android surveillanceware campaign dating to October 2019 that appears aligned with Houthi actors and has targeted military users across the Middle East by distributing sideloaded fake apps via WhatsApp; GuardZoo—based on a stripped-down Dendroid RAT—exfiltrates mapping/GPS-related files and other sensitive data, uses a C2 infrastructure tied to Houthi-controlled telecom assets, and demonstrates focused tactical espionage against armed forces.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
