Cyber-crime group APT-C-23 (other names Two-Tailed Scorpion and Desert Scorpion) armed with a new version of spyware for Android devices with an updated C& C-strategy and advanced spy functionality for tracking users of WhatsApp and Telegram.
Currently, the malware Android/SpyC32.A (according to the classification of the IS-company ESET) is used in the campaign against users in the Middle East. The malware is a new version of the already existing malware, used by the group APT-C-23 in attacks on users.
Attackers distribute malware under the guise of a legitimate WeMessage messenger. The application is one hundred percent malicious and does not look like the real one. It has no functionality and its only purpose is to install spyware on a device.