mastodon.ie is one of the many independent Mastodon servers you can use to participate in the fediverse.
Irish Mastodon - run from Ireland, we welcome all who respect the community rules and members.

Administered by:

Server stats:

1.8K
active users

#sideloading

1 post1 participant0 posts today

Gamaredon campaign abuses LNK files to distribute Remcos backdoor

A campaign targeting users in Ukraine with malicious LNK files has been observed since November 2024. The files, using Russian words related to troop movements as lures, run a PowerShell downloader contacting geo-fenced servers in Russia and Germany. The second stage payload uses DLL side loading to execute the Remcos backdoor. The activity is attributed to the Gamaredon threat actor group with medium confidence. The campaign uses the invasion of Ukraine as a theme in phishing attempts, distributing LNK files disguised as Office documents. The servers used are mostly hosted by GTHost and HyperHosting ISPs. The attack chain involves DLL sideloading to load the Remcos backdoor, which communicates with a C2 server on a specific port.

Pulse ID: 67e6c6b5e3b5eec595438366
Pulse Link: otx.alienvault.com/pulse/67e6c
Pulse Author: AlienVault
Created: 2025-03-28 15:56:37

Be advised, this data is unverified and should be considered preliminary. Always do further verification.

LevelBlue Open Threat ExchangeLevelBlue - Open Threat ExchangeLearn about the latest cyber threats. Research, collaborate, and share threat intelligence in real time. Protect yourself and the community against today's emerging threats.

Apps can now block #sideloading more easily and force downloads through #GooglePlay
#Google Play Integrity API makes it easy for apps to detect when they weren’t installed from the Google #PlayStore. androidauthority.com/play-inte
argh.....
I am on #Android as I don't want a #WalledGarden
I use Google Play, and #FDroid, and #Obtainium
I don't want #Surveillance of all my apps, I want #Privacy and access to #OpenSource

Samsung's Auto Blocker is enabled by default on Galaxy phones that ship with One UI 6.1.1 (including the new Z Flip6 and Z Fold6), preventing you from sideloading apps from outside the Google or Samsung's app stores. But Auto Blocker can be disabled. buff.ly/3y88OOy #Samsung #OneUI #AutoBlocker #Sideloading #Android

Android Authority · PSA: New Samsung phones block sideloading by default. Here's how to re-enable itAuto Blocker stops apps from being sideloaded and is enabled on Galaxy devices released with One UI 6.1.1. Here's how to turn it off.