LightSpy Malware Now Targets Facebook & Instagram Data
ID: cd44cc7c-1caa-5c06-871b-4fd2b4511325
STIX ID: report--cd44cc7c-1caa-5c06-871b-4fd2b4511325
Feed Name: Hunt.io Blog
LightSpy is a modular surveillance framework active since 2020 that has evolved into a cross-platform (Android, iOS, Windows, macOS, Linux, routers) data-exfiltration and surveillance tool. This report documents an expanded C2 command set (now >100 commands), newly observed Windows plugins (keylogging, audio/video capture, USB interaction), iOS plugins, targeting of Facebook and Instagram database files, exposed admin panel endpoints, active C2 IPs, file hashes for host artifacts, and recommended mitigations such as restricting app permissions and enabling platform security features.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
