The tap-estry of threats targeting Hamster Kombat players
ID: a36c134a-2a48-5dc3-8d05-e06d39ecdce2
STIX ID: report--a36c134a-2a48-5dc3-8d05-e06d39ecdce2
Feed Name: WeLiveSecurity (ESET Research)
ESET Research discovered cybercriminal activity leveraging the popularity of the Telegram clicker game Hamster Kombat: an Android spyware (Ratel) distributed via an unofficial Telegram channel that steals SMS, hides notifications, and accepts SMS-based commands; fake app storefronts that deliver unwanted ads; and GitHub-distributed cryptors that deploy Lumma Stealer to Windows victims. The report includes technical analysis of each threat, sample hashes, C2 IPs/domains, code and delivery details (RC4/AES-GCM embedding, process hollowing, FTP download), and MITRE ATT&CK mappings to support detection and mitigation.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
