BoneSpy

Description

(Lookout) The BoneSpy family showed evidence of continuous development between roughly January and October 2022, after which samples began using consistent lure theming and code structure. Earlier samples from between January and September 2022 used a variety of trojanized apps such as battery charge monitoring apps, photo-gallery apps, a fake Samsung Knox app, and trojanized Telegram apps. Later, Gamaredon largely shifted to using trojanized, fully functional Telegram samples titled as “Beta” versions.

Names

Name
BoneSpy

Category

Malware

Type

  • Reconnaissance
  • Backdoor
  • Info stealer

Information

Other Information

Uuid

10958f58-9776-4d97-82f9-fbf37312d0d3

Last Card Change

2024-12-27