mirror of
https://github.com/MISP/misp-galaxy.git
synced 2024-11-27 01:07:18 +00:00
28 lines
1.3 KiB
JSON
28 lines
1.3 KiB
JSON
{
|
|
"name": "Mobile Attack - Tool",
|
|
"type": "mitre-mobile-attack-tool",
|
|
"description": "Name of ATT&CK software",
|
|
"version": 3,
|
|
"source": "https://github.com/mitre/cti",
|
|
"uuid": "02cee87e-1708-11e8-8f15-8b33e4d6194b",
|
|
"authors": [
|
|
"MITRE"
|
|
],
|
|
"values": [
|
|
{
|
|
"description": "Xbot is a family of Android malware analyzed by Palo Alto Networks (Citation: PaloAlto-Xbot) that \"tries to steal victims' banking credentials and credit card information\", \"can also remotely lock infected Android devices, encrypt the user's files in external storage (e.g., SD card), and then ask for a U.S. $100 PayPal cash card as ransom\" and \"will steal all SMS message and contact information, intercept certain SMS messages, and parse SMS messages for mTANs (Mobile Transaction Authentication Number) from banks.\"\n\nAliases: Xbot",
|
|
"value": "Xbot - MOB-S0014",
|
|
"meta": {
|
|
"refs": [
|
|
"https://attack.mitre.org/mobile/index.php/Software/MOB-S0014",
|
|
"http://researchcenter.paloaltonetworks.com/2016/02/new-android-trojan-xbot-phishes-credit-cards-and-bank-accounts-encrypts-devices-for-ransom/"
|
|
],
|
|
"external_id": "MOB-S0014",
|
|
"synonyms": [
|
|
"Xbot"
|
|
]
|
|
},
|
|
"uuid": "da21929e-40c0-443d-bdf4-6b60d15448b4"
|
|
}
|
|
]
|
|
}
|