Iran-linked 'Chosen Brick' malware targets dissidents and journalists

A joint security advisory from the UK’s NCSC, the FBI, and the Netherlands’ AIVD has exposed a sophisticated cyber-espionage campaign attributed to Iranian operatives. The campaign utilizes a custom malware strain dubbed 'Chosen Brick' to target dissidents, activists, and journalists deemed threats to the regime. Attackers employ social engineering tactics, often posing as acquaintances or technical support on social media to gain the trust of their targets. Once installed on Windows systems, Chosen Brick enables extensive surveillance, including audio recording, screen capture, and the theft of sensitive data from messaging apps like WhatsApp and Telegram. The malware can also download additional payloads or wipe systems entirely. Intelligence agencies emphasize that the primary defense against such threats is heightened awareness of social engineering, alongside robust technical measures such as phishing-resistant multi-factor authentication, regular software updates, and active endpoint monitoring to detect indicators of compromise.
This is a summary. Read the full article at the original source:
TechRadarRelated stories
Researchers demonstrate InjectEave: A technique to intercept audio through walls
Researchers from HKUST (Guangzhou) and HK PolyU have unveiled 'InjectEave,' a sophisticated eavesdropping technique capable of extracting audio from h…
The article discusses an innovative approach to digital content authentication, proposing the use of 'spymarks' as a superior alternative to tradition…
Cybersecurity researchers at Zimperium have identified a sophisticated new Android malware strain dubbed RatHat. Unlike traditional malware that relie…


