Darcula

Last updated • a couple of secsFrom Wikipedia, The Free Encyclopedia

Darcula is a phishing-as-a-service (PhaaS) Chinese-language platform which has been used against organizations (government, airlines) and services (postal, financial) in over 100 countries. [1] [2] Darcula offers to cybercriminals more than 20,000 counterfeit domains (to spoof brands) and over 200 templates. [1] [2] Darcula uses iMessage and RCS (Rich Communication Services) to steal credentials from Android and iPhone users. [3]

Related Research Articles

<span class="mw-page-title-main">AIM (software)</span> Instant messaging service

AIM was an instant messaging and presence computer program created by AOL, which used the proprietary OSCAR instant messaging protocol and the TOC protocol to allow registered users to communicate in real time.

<span class="mw-page-title-main">SMS</span> Text messaging service component

Short Message Service, commonly abbreviated as SMS, is a text messaging service component of most telephone, Internet and mobile device systems. It uses standardized communication protocols that let mobile phones exchange short text messages, typically transmitted over cellular networks.

Multimedia Messaging Service (MMS) is a standard way to send messages that include multimedia content to and from a mobile phone over a cellular network. Users and providers may refer to such a message as a PXT, a picture message, or a multimedia message. The MMS standard extends the core SMS capability, allowing the exchange of text messages greater than 160 characters in length. Unlike text-only SMS, MMS can deliver a variety of media, including up to forty seconds of video, one image, a slideshow of multiple images, or audio.

<span class="mw-page-title-main">Text messaging</span> Act of typing and sending a brief, digital message

Text messaging, or simply texting, is the act of composing and sending electronic messages, typically consisting of alphabetic and numeric characters, between two or more users of mobile phones, tablet computers, smartwatches, desktops/laptops, or another type of compatible computer. Text messages may be sent over a cellular network or may also be sent via satellite or Internet connection.

<span class="mw-page-title-main">Phishing</span> Form of social engineering

Phishing is a form of social engineering and a scam where attackers deceive people into revealing sensitive information or installing malware such as viruses, worms, adware, or ransomware. Phishing attacks have become increasingly sophisticated and often transparently mirror the site being targeted, allowing the attacker to observe everything while the victim navigates the site, and transverses any additional security boundaries with the victim. As of 2020, it is the most common type of cybercrime, with the FBI's Internet Crime Complaint Center reporting more incidents of phishing than any other type of cybercrime.

<span class="mw-page-title-main">Gmail</span> Email service provided by Google

Gmail is the email service provided by Google. As of 2019, it had 1.5 billion active users worldwide, making it the largest email service in the world. It also provides a webmail interface, accessible through a web browser, and is also accessible through the official mobile application. Google also supports the use of third-party email clients via the POP and IMAP protocols.

The IP Multimedia Subsystem or IP Multimedia Core Network Subsystem (IMS) is a standardised architectural framework for delivering IP multimedia services. Historically, mobile phones have provided voice call services over a circuit-switched-style network, rather than strictly over an IP packet-switched network. Various voice over IP technologies are available on smartphones; IMS provides a standard protocol across vendors.

A transaction authentication number (TAN) is used by some online banking services as a form of single use one-time passwords (OTPs) to authorize financial transactions. TANs are a second layer of security above and beyond the traditional single-password authentication.

Voice phishing, or vishing, is the use of telephony to conduct phishing attacks.

Rich Communication Services (RCS) is a communication protocol standard for instant messaging, primarily for mobile phones, developed and defined by the GSM Association (GSMA). It aims to be a replacement of SMS and MMS on cellular networks with more modern features including high resolution image and video support, typing indicators, file sharing, and improved group chat functionality. As for MMS, mobile service must be activated. Development of RCS began in 2007 but early versions lacked features and interoperability; a new specification named Universal Profile was developed and has been continually rolled out since 2017.

A mobile social address book is a phonebook on a mobile device that enables subscribers to build and grow their social networks. The mobile social address book transforms the phone book on any standard mobile phone into a social networking platform that makes it easier for subscribers to exchange contact information. The mobile social address book is the convergence of personal information management (PIM) and social networking on a mobile device. While standard mobile phonebooks force users to manually enter contacts, mobile social address books automate this process by enabling subscribers to exchange contact information following a call or SMS. The contact information exchange occurs instantaneously and the user's phonebook updates automatically. Mobile social address books also provide dynamic updates of contacts if their numbers change over time.

<span class="mw-page-title-main">Multi-factor authentication</span> Method of computer access control

Multi-factor authentication is an electronic authentication method in which a user is granted access to a website or application only after successfully presenting two or more pieces of evidence to an authentication mechanism. MFA protects personal data—which may include personal identification or financial assets—from being accessed by an unauthorized third party that may have been able to discover, for example, a single password.

<span class="mw-page-title-main">WhatsApp</span> Messaging and VoIP service owned by Meta

WhatsApp is an instant messaging (IM) and voice-over-IP (VoIP) service owned by technology conglomerate Meta. It allows users to send text, voice messages and video messages, make voice and video calls, and share images, documents, user locations, and other content. WhatsApp's client application runs on mobile devices, and can be accessed from computers. The service requires a cellular mobile telephone number to sign up. In January 2018, WhatsApp released a standalone business app called WhatsApp Business which can communicate with the standard WhatsApp client.

iMessage Instant messaging service by Apple

iMessage is an instant messaging service developed by Apple Inc. and launched in 2011. iMessage functions exclusively on Apple platforms – including iOS, iPadOS, macOS, watchOS, and visionOS – as part of Apple's approach to inter-device integration, which has been described by media outlets as a means of achieving vendor lock-in. iMessage is accessed and used using the Messages app client.

<span class="mw-page-title-main">Messages (Apple)</span> Instant messaging software applications

Messages is a text messaging software application developed by Apple Inc. for its macOS, iOS, iPadOS, watchOS, and visionOS operating systems.

<span class="mw-page-title-main">Google Allo</span> Instant messaging app by Google

Google Allo was an instant messaging mobile app by Google for the Android and iOS mobile operating systems, with a web client available in some web browsers. It closed on March 12, 2019.

<span class="mw-page-title-main">Phone Link</span> Software application developed by Microsoft

Phone Link, previously Your Phone, is a syncing software developed by Microsoft to connect Windows PCs to Android and iOS mobile devices to view notifications, make phone calls, use mobile apps amongst others, via the PC. It is a native component of Windows 10 and Windows 11, where it is a UWP app and consists of a driver that communicates with the Link to Windows app on the mobile device. Phone Link makes use of Wi-Fi, Bluetooth for voice calls, or mobile data.

<span class="mw-page-title-main">Google Messages</span> Messaging application developed by Google

Google Messages is a text messaging software application developed by Google for its Android and Wear OS mobile operating systems. It is also available as a web app.

Comparison of user features of messaging platforms refers to a comparison of all the various user features of various electronic instant messaging platforms. This includes a wide variety of resources; it includes standalone apps, platforms within websites, computer software, and various internal functions available on specific devices, such as iMessage for iPhones.

iOS 18 2024 mobile operating system

iOS 18 is the eighteenth and current major release of Apple's iOS operating system for the iPhone. It was announced on June 10, 2024, at the 2024 Worldwide Developers Conference (WWDC). It was made publicly available on September 16, 2024, as a free software update for supported iOS devices. It is the direct successor to iOS 17 and was announced alongside iPadOS 18, macOS Sequoia, watchOS 11, visionOS 2, and tvOS 18.

References

  1. 1 2 "Darcula Phishing Network Leveraging RCS and iMessage to Evade Detection". The Hacker News.
  2. 1 2 "New Darcula phishing service targets iPhone users via iMessage". BleepingComputer.
  3. "'Darcula' Phishing-as-a-Service Operation Bleeds Victims Worldwide". www.darkreading.com.