VLC media player reportedly under threat of Chinese malware

VLC, the open source and free multimedia player, is one of the most used applications on the operating platform. VLC makes it easy for users to play video and audio files. The easy-to-use and easy-to-use platform can play almost any type of file. VLC file size makes it easy to use even in low memory devices but recent reports suggest that VLC is being targeted by Chinese hackers.

Cybersecurity experts at Symantec say that a Chinese hacking group called Cicada is using VLC on Windows systems to launch malware used to spy on governments and related organizations.

Additionally, cicadas have targeted the legal and non-profit sectors, as well as organizations with religious connections. Hackers have cast a wide net, with targets in the United States, Canada, Hong Kong, Turkey, Israel, India, Montenegro and Italy.

According to Symantec, Cicada uses a clean version of VLC to implant a malicious file with the media player’s export functions. This is a technique that hackers rely on, often using malware that would otherwise be legitimate software.

Cicada then uses a VNC remote-access server to take full ownership of the compromised system. They can then evade detection by using hacking tools such as Sodamaster, which scans targeted systems, downloads more malicious packages, and obscures communications between the compromised system and the hackers’ command-and-control servers. does.

The VLC attacks probably began in 2021 when hackers exploited a known Microsoft Exchange Server vulnerability. Researchers have indicated that the mysterious malware lacks a funny, dramatic name like Xenomorph or Escobar, but they are certain it is being used for espionage.

subscribe to mint newspaper

, Enter a valid email

, Thank you for subscribing to our newsletter!


download
The app will get 14 days of unlimited access to Mint Premium absolutely free!