New hacking tool targeting Bangladesh Android users blurs lines between spying and stealing | The Business Standard
Skip to main content
  • Latest
  • Economy
    • Banking
    • Stocks
    • Industry
    • Analysis
    • Bazaar
    • RMG
    • Corporates
    • Aviation
  • Videos
    • TBS Today
    • TBS Stories
    • TBS World
    • News of the day
    • TBS Programs
    • Podcast
    • Editor's Pick
  • World+Biz
  • Features
    • Panorama
    • The Big Picture
    • Pursuit
    • Habitat
    • Thoughts
    • Splash
    • Mode
    • Tech
    • Explorer
    • Brands
    • In Focus
    • Book Review
    • Earth
    • Food
    • Luxury
    • Wheels
  • Subscribe
    • Get the Paper
    • Epaper
    • GOVT. Ad
  • More
    • Sports
    • TBS Graduates
    • Bangladesh
    • Supplement
    • Infograph
    • Archive
    • Gallery
    • Long Read
    • Interviews
    • Offbeat
    • Magazine
    • Climate Change
    • Health
    • Cartoons
  • বাংলা
The Business Standard

Friday
July 18, 2025

Sign In
Subscribe
  • Latest
  • Economy
    • Banking
    • Stocks
    • Industry
    • Analysis
    • Bazaar
    • RMG
    • Corporates
    • Aviation
  • Videos
    • TBS Today
    • TBS Stories
    • TBS World
    • News of the day
    • TBS Programs
    • Podcast
    • Editor's Pick
  • World+Biz
  • Features
    • Panorama
    • The Big Picture
    • Pursuit
    • Habitat
    • Thoughts
    • Splash
    • Mode
    • Tech
    • Explorer
    • Brands
    • In Focus
    • Book Review
    • Earth
    • Food
    • Luxury
    • Wheels
  • Subscribe
    • Get the Paper
    • Epaper
    • GOVT. Ad
  • More
    • Sports
    • TBS Graduates
    • Bangladesh
    • Supplement
    • Infograph
    • Archive
    • Gallery
    • Long Read
    • Interviews
    • Offbeat
    • Magazine
    • Climate Change
    • Health
    • Cartoons
  • বাংলা
FRIDAY, JULY 18, 2025
New hacking tool targeting Bangladesh Android users blurs lines between spying and stealing

Tech

TBS Report 
10 February, 2021, 08:40 am
Last modified: 10 February, 2021, 08:45 am

Related News

  • Former US Army soldier pleads guilty in phone company hacking, extortion case
  • Google pulls Android development behind closed doors
  • Crypto exchange Bybit loses $1.5 billion in record hack
  • Miscreant enters home, hacks 3 people including journalist’s parents in Faridpur
  • EU aims to make Android and iOS more cross-compatible

New hacking tool targeting Bangladesh Android users blurs lines between spying and stealing

On Tuesday, Ventura and his colleagues at Talos, Cisco’s threat intelligence unit, publicly connected the new Android tool to the malware developers behind a multi-year effort to spy on people from South America to Bangladesh

TBS Report 
10 February, 2021, 08:40 am
Last modified: 10 February, 2021, 08:45 am
Representational Image
Representational Image

In one of his regular sweeps for new malicious software targeting Android phones, security researcher Vitor Ventura came across what looked like a run-of-the mill hacking tool.

Like so many pieces of code before it, the malware was capable of stealing information from a mobile device and sending it back to a command and control server. But when Ventura dug deeper, he found that the remote access trojan (or RAT, as the tool is commonly known) was capable of surreptitiously recording conversations and taking screenshots. Spying, rather than immediately making money off of the illicit access, was the apparent goal, reports Cyber Scoop. 

On Tuesday, Ventura and his colleagues at Talos, Cisco's threat intelligence unit, publicly connected the new Android tool to the malware developers behind a multi-year effort to spy on people from South America to Bangladesh.

The Business Standard Google News Keep updated, follow The Business Standard's Google news channel

Much about the people behind the hacking campaign is a mystery. Ventura and his colleagues have found no evidence linking the tool to a state actor, nor have they seen the hackers marketing any stolen data in criminal forums. But the ongoing investigation hints at a bustling underground market for spying kits that are difficult to trace.

Multiple new mercenary groups that sell their services to the highest bidder have surfaced in recent months, and the Talos team has considered whether this could be another such "hack-for-hire" outfit. Another possibility, Ventura said, is the malware developers are treating their tool as a bulk commodity that can be marketed to clients indiscriminately — something akin to the "loggers" that record keystrokes and are a staple of the criminal underworld. 

The attackers "are way more into spying and getting all the information that they can out of people rather than direct financial gain by just harvesting credentials," Ventura said. Perhaps the hackers are conducting espionage and selling the information they gather on the black market, he mused, which would be "consistent with this kind of broad targeting."

For now, though, evidence remains scant to support either theory. What's clear is that the so-called Loda RAT is capable of targeting more people than ever before.  

Whereas a 2019 campaign using the tool to spy on people in Argentina, Brazil and the U.S., the latest hacking campaign, which began in October, has targeted customers of banks and a telecom carrier in Bangladesh. The attackers previously focused on Windows systems, but the new Android tool allows them to vastly expand their potential surveillance net.

The shift of Loda RAT's targeting to Bangladesh also is an enigma. But the South Asian nation is home to some 164 million people, many of whom use Android phones.

"This gives them a lot more flexibility in the victims that they target," Ventura said. "Our entire life is on a mobile device."

The researchers say some clues point to the Android malware developer being based in Morocco. By going public with their findings, they are hoping to flush out more details about the attackers' motivations and infrastructure.

Ventura suspects this isn't the last he's heard from the Loda RAT developers.

"They are actively developing" their code, he said, adding that additional hacking campaigns employing the RAT could be in the offing.
 

Top News

Android / Android Users / Hacking / Spying

Comments

While most comments will be posted if they are on-topic and not abusive, moderation decisions are subjective. Published comments are readers’ own views and The Business Standard does not endorse any of the readers’ comments.

Top Stories

  • Around 99% of the cotton used in Bangladesh’s export and domestic garment production is imported. Photo: Collected
    NBR withdraws advance tax on imports of cotton, man-made fibres
  • The fire originated at 10:40pm on the 21th floor of the building. Photo: Collected
    Fire at Sena Kalyan Bhaban in Motijheel under control
  • Chief Adviser Professor Muhammad Yunus presided over a meeting of the National Consensus Commission at the State Guest House Jamuna yesterday (17 July). Photo: UNB
    CA Yunus stresses transparency in finalising July Charter

MOST VIEWED

  • Bangladesh Bank buys $313m more in second dollar auction in three days
    Bangladesh Bank buys $313m more in second dollar auction in three days
  • Representational image. File Photo: Syed Zakir Hossain/TBS
    Malaysia grants Bangladeshi workers multiple-entry visas
  • The Chattogram Custom House building in Chattogram. File Photo: Collected
    Software slowdown disrupts customs operations nationwide
  • NCP leaders are seen getting on an armoured personnel carrier (APC) of the army to leave Gopalganj following attacks on their convoy after the party's rally in the district today (16 july). Photo: Focus Bangla
    NCP leaders leave Gopalganj in army's APC following attack on convoy, clashes between AL, police
  • Renata’s manufacturing standards win european recognition
    Renata’s manufacturing standards win european recognition
  • The supporters of local Awami League and Chhatra League locked in a clash with police following attacks on NCP convoy this afternoon (16 July). Photo: Collected
    Gopalganj under curfew; 4 killed as banned AL, police clash after attack on NCP leaders

Related News

  • Former US Army soldier pleads guilty in phone company hacking, extortion case
  • Google pulls Android development behind closed doors
  • Crypto exchange Bybit loses $1.5 billion in record hack
  • Miscreant enters home, hacks 3 people including journalist’s parents in Faridpur
  • EU aims to make Android and iOS more cross-compatible

Features

Illustration: TBS

20 years of war, 7.5m tonnes of bombs, 1.3m dead: How the US razed Vietnam to the ground

1h | The Big Picture
On 17 July 2024, Dhaka University campus became a warzone with police firing tear shells and rubber bullets to control the student movement. File Photo: Rajib Dhar/TBS

17 July 2024: Students oust Chhatra League from campuses, Hasina promises 'justice' after deadly crackdown

9h | Panorama
Abu Sayeed spread his hands as police fired rubber bullets, leading to his tragic death. Photos: Collected

How Abu Sayed’s wings of freedom ignited the fire of July uprising

2d | Panorama
Illustration: TBS

Open source legal advice: How Facebook groups are empowering victims of land disputes

3d | Panorama

More Videos from TBS

Why the conflicting claims over Gopalganj autopsies?

Why the conflicting claims over Gopalganj autopsies?

2h | TBS Stories
Gopalganj violence in international media

Gopalganj violence in international media

2h | TBS World
The Philippines has become a laboratory for China's disinformation propaganda

The Philippines has become a laboratory for China's disinformation propaganda

3h | TBS World
Gopalganj clash: Army urges not to be misled by rumors

Gopalganj clash: Army urges not to be misled by rumors

5h | TBS Today
EMAIL US
contact@tbsnews.net
FOLLOW US
WHATSAPP
+880 1847416158
The Business Standard
  • About Us
  • Contact us
  • Sitemap
  • Advertisement
  • Privacy Policy
  • Comment Policy
Copyright © 2025
The Business Standard All rights reserved
Technical Partner: RSI Lab

Contact Us

The Business Standard

Main Office -4/A, Eskaton Garden, Dhaka- 1000

Phone: +8801847 416158 - 59

Send Opinion articles to - oped.tbs@gmail.com

For advertisement- sales@tbsnews.net