Files
cti/mobile-attack/malware/malware--429e1526-6293-495b-8808-af7f9a66c4be.json
2026-04-27 15:19:48 -04:00

53 lines
2.3 KiB
JSON

{
"type": "bundle",
"id": "bundle--f90209cb-79c2-4ea5-8cb0-4fe1fb4595ed",
"spec_version": "2.0",
"objects": [
{
"modified": "2023-10-11T14:36:39.396Z",
"name": "Fakecalls",
"description": "[Fakecalls](https://attack.mitre.org/software/S1080) is an Android trojan, first detected in January 2021, that masquerades as South Korean banking apps. It has capabilities to intercept calls to banking institutions and even maintain realistic dialogues with the victim using pre-recorded audio snippets.(Citation: kaspersky_fakecalls_0422) ",
"x_mitre_platforms": [
"Android"
],
"x_mitre_deprecated": false,
"x_mitre_domains": [
"mobile-attack"
],
"x_mitre_version": "1.0",
"x_mitre_contributors": [
"Pooja Natarajan, NEC Corporation India",
"Hiroki Nagahama, NEC Corporation",
"Manikantan Srinivasan, NEC Corporation India"
],
"x_mitre_aliases": [
"Fakecalls"
],
"type": "malware",
"id": "malware--429e1526-6293-495b-8808-af7f9a66c4be",
"created": "2023-07-21T19:49:44.577Z",
"created_by_ref": "identity--c78cb6e5-0c4b-4611-8297-d1b8b55e40b5",
"revoked": false,
"external_references": [
{
"source_name": "mitre-attack",
"url": "https://attack.mitre.org/software/S1080",
"external_id": "S1080"
},
{
"source_name": "kaspersky_fakecalls_0422",
"description": "Igor Golovin. (2022, April 11). Fakecalls: a talking Trojan. Retrieved July 21, 2023.",
"url": "https://www.kaspersky.com/blog/fakecalls-banking-trojan/44072/"
}
],
"object_marking_refs": [
"marking-definition--fa42a846-8d90-4e51-bc29-71d5b4802168"
],
"x_mitre_attack_spec_version": "3.2.0",
"x_mitre_modified_by_ref": "identity--c78cb6e5-0c4b-4611-8297-d1b8b55e40b5",
"labels": [
"malware"
]
}
]
}