TI Mindmap HUB
Threat Intelligence Report

WhatsApp compromise leads to Astaroth deployment โ€“ Sophos News

๐Ÿ“… November 21, 2025 ๐Ÿ“ฐ news.sophos.com ๐Ÿ” 0 CVE(s) referenced

A sophisticated, multi-stage phishing campaign is targeting WhatsApp users in Brazil to steal contact data and deploy the Astaroth banking trojan via malicious archive attachments and automated session hijacking.

vendor

Sign in to access the full report including:
detailed analysis, IOCs, MITRE ATT&CK mapping, and STIX bundle.

๐Ÿ” Sign In to Read Full Report

You'll need to accept our Terms of Service to access the platform.

๐Ÿ“Š Visual Mindmap
๐ŸŽฏ IOC Extraction
โš”๏ธ MITRE ATT&CK TTPs
๐Ÿ“ฆ STIX 2.1 Bundle