![]() |
FinSpy - Government/Law Enforcement Malware hacked and leaked
FinSpy that supplies police forces and governments around the world with infiltration and trojan abilities has been hacked (again).
Rather than explain it all, check out this sub on Reddit The android and other phone trojans are part of a torrent listed on the above page. The whole package would be interesting for someone in the infosec industry or with this stuff as a hobby. You can see things like how they just re-sell Vupen exploits as infection vectors and such like. Also on the antivirus side of things, one of the slides in the package shows that only Eset Antivirus would catch and stop the infection a few months ago. Even then, only on 32bit versions of windows and not 64bit versions, which will interest those from another security thread recently :) https://www.dropbox.com/s/6fpd5rnwx0...y-PC-4.51.xlsm |
Re: FinSpy - Government/Law Enforcement Malware hacked and leaked
That is the AV results in the link above by the way, in xls format. Will be interesting to see what happens as all the AV vendors now have a few versions of finspy to add to their definitions. So some people are going to get a definitions update and find they are infected with it. It's not hard for them to make it AV proof again but if they do it in a unique way for every client, it's a fair bit of work.
Following links somewhere on that subreddit you can find a torrent/magnet link with the webserver c&c code, finspy installs for all OS phones etc. Some stuff is pgp encrypted but a lot isn't. |
Re: FinSpy - Government/Law Enforcement Malware hacked and leaked
Something seen in a writeup about packet interception and injection where Finspy was mentioned but the way they encapsulated how the injection works in to a few sentences was too good not to share:
Quote:
|
| All times are GMT. The time now is 13:29. |
Powered by vBulletin® Version 3.8.11
Copyright ©2000 - 2026, vBulletin Solutions Inc.
All Posts and Content are © Cable Forum