image credit: Unsplash

Warning: GravityRAT Android Trojan Steals WhatsApp Backups and Deletes Files

June 15, 2023

An updated version of an Android remote access trojan dubbed GravityRAT has been found masquerading as messaging apps BingeChat and Chatico as part of a narrowly targeted campaign since June 2022.

“Notable in the newly discovered campaign, GravityRAT can exfiltrate WhatsApp backups and receive commands to delete files,” ESET researcher Lukáš Štefanko said in a new report published today.

“The malicious apps also provide legitimate chat functionality based on the open-source OMEMO Instant Messenger app.”

Read More on The Hacker News