This malware pretends to be Amnesty International protection from Pegasus

Antivirus Software

(Image credit: Shutterstock)

Security researchers from Cisco Talos have discovered a new malware campaign in which cybercriminals are impersonating the human rights group Amnesty International.

According to a new blog post, the campaign is targeting those concerned about falling victim to the Pegasus spyware which was created by the NSO Group and distributed to authoritarian governments around the world to keep tabs on international journalists and activists.

Now though, cybercriminals have created a fake website impersonating the official site of Amnesty International which provides an antivirus tool that they claim can be used to protect against Pegasus. 

While potential victims believe the software can help protect their privacy and keep them safe online, it actually installs a little-known malware called Sarwent.

Sarwent malware

The Sarwent malware can create a backdoor on a victim’s system but it can also activate remote desktop protocol which would allow an attacker to access a user’s desktop directly. 

Due to the recent headlines regarding the Pegasus spyware, Cisco Talos believes that this campaign has the potential to infect many users. In fact, Apple also recently pushed out a security update for iOS that patched a vulnerability attackers had been exploiting to install Pegasus which led to even more people becoming aware of the spyware’s existence.

Sarwent differs from other information stealers due to the fact that it has a look and feel similar to other antivirus software. It can exfiltrate any kind of data from a victim’s computer but it also provides an attacker with the means to upload and execute other malicious tools as well.

Thankfully though, Cisco Talos has not yet observed any malicious advertisements or phishing campaigns being used to promote the fake Amnesty International website that distributes Sarwent. Still though, users should be on the lookout for the “Amnesty Anti Pegasus” software called “AVPegasus” and as always, they should avoid downloading and installing software from unknown sources online.

Anthony Spadafora

After living and working in South Korea for seven years, Anthony now resides in Houston, Texas where he writes about a variety of technology topics for ITProPortal and TechRadar. He has been a tech enthusiast for as long as he can remember and has spent countless hours researching and tinkering with PCs, mobile phones and game consoles.

Note: This article have been indexed to our site. We do not claim ownership or copyright of any of the content above. To see the article at original source Click Here

Related Posts
Inscryption Review thumbnail

Inscryption Review

Price: £16.79 Developer: Daniel Mullins Games Publisher: Devolver Digital Platform: PC It's rare that a game grabs your attention from the starting menu, but then again, Inscryption is a rare game in so many regards. Boot up Inscryption for the first time, and after sitting through a faux-loading screen, your right index finger will be
Read More
Här är gratisappen som gör mobilen till en skanner thumbnail

Här är gratisappen som gör mobilen till en skanner

Minns du skannern? För 20 år sedan var den ett självklart tillbehör på många hemmakontor, men idag är det nästan ingen som köper separata skannrar.Produkten har i stället slagits ihop med skrivaren – och resultatet blir en så kallad multifunktionsskrivare. Du som tycker att en sådan är onödigt stor kan dock använda en ännu smidigare…
Read More
Index Of News
Total
0
Share