New Malware Affects WhatsApp and Telegram

The Tria Stealer malware steals user information by accessing their messages and calls. Kaspersky warns about the risks and recommends protective measures.


New Malware Affects WhatsApp and Telegram

The cybersecurity firm Kaspersky has identified a new malware called Tria Stealer that is threatening users of WhatsApp and Telegram. This malware, once installed, gains full access to the victim's device, including messages, calls, and notifications. Once cybercriminals take control of the account, they impersonate the victim and request money transfers to their contacts.

The capabilities of the Tria Stealer malware are alarming. It can access SMS messages to intercept verification codes, monitor calls and private messages, steal credentials and banking data, as well as use WhatsApp and Telegram accounts to spread to new contacts by sending the malicious file.

In light of this sophisticated threat, it is essential to take preventive measures to avoid falling victim to such attacks. It is recommended not to install APK files sent via WhatsApp or Telegram, to be suspicious of unusual downloads or installations, not to grant permissions to unknown applications, to activate two-step verification on WhatsApp and Telegram, to use reliable security software, and in case of infection, to remove the malicious application, change passwords, and check for suspicious activity.

This malicious campaign takes advantage of social engineering to deceive victims. Attackers hijack compromised accounts and exploit the trust of contacts to send camouflaged malicious files. Therefore, it is essential to remain vigilant and take preventive measures to avoid falling into these cyber traps. Cybercriminals seek to intercept verification codes through messages on WhatsApp and Telegram, compromising the security of their victims' accounts.

The malicious campaign behind Tria Stealer operated by distributing a malicious file disguised as a wedding invitation. With convincing messages, attackers managed to have victims install the malware on their devices, allowing them to fraudulently appropriate personal information. This social engineering-based deception serves as a reminder of the importance of being alert and preventing potential cyber risks.