Huge shifts within the infostealer scene, novel assault vector towards iOS and Android, and a large surge in funding scams on social media
28 Feb 2025
•
,
1 min. learn

Typically, our telemetry knowledge looks like the waters of a relaxed bay, with small, easy waves gently rocking the ships anchored there to sleep. Different occasions, nevertheless, robust winds come and alter the whole lot, bringing towering waves and scattering the ships far and wide, reworking the terrain of the bay itself within the course of.
ESET Risk Report H2 2024 felt a bit like that. Main malware households have been taken down by regulation enforcement; cellular gadgets noticed the start of a brand new, probably very enticing, assault vector concentrating on each iOS and Android; there was one more prison “crypto gold rush”; and deepfake scams flooded social media.
Within the first part of this newest ESET Analysis Podcast episode, ESET Distinguished Researcher Aryeh Goretsky and Safety Consciousness Specialist Ondrej Kubovič focus on the infamous primary infostealer Agent Tesla being changed by its outdated competitor Formbook, the takedown of Redline Stealer and Meta Stealer, and a brand new social engineering approach fueling the speedy development of Lumma Stealer.
In addition they take a better have a look at a novel assault vector that works for each Android and iOS gadgets, one that’s misusing applied sciences permitting cellular customers to put in apps straight from web sites from cellular browsers.
Within the remaining a part of the H2 2024 episode, Aryeh and Ondrej additionally go over the booming numbers of funding scams on social media, detected as HTML/Nomani, describing the appears, social engineering, and influence of this fraudulent exercise.
If any of the matters caught your curiosity, take heed to the newest episode of the ESET Analysis podcast. In case you favor the “print” model, obtain the total H2 2024 report from the Risk Stories part of WeLiveSecurity.com.
Mentioned:
- Infostealer shakeup 2:10
- A novel assault vector for iOS and Android 16:35
- Nomani scams 27:00