Gamaredon’s Mobile Mischief: Unleashing BoneSpy and PlainGnome on Androids!

Gamaredon, a Russia-linked threat actor, has debuted two new Android spyware tools, BoneSpy and PlainGnome. These mobile-only malware families target Russian-speaking victims in former Soviet states, collecting everything from texts to selfies. Apparently, Gamaredon’s New Year resolution was to become a digital hoarder of personal data.

Pro Dashboard

Hot Take:

Well, it looks like Gamaredon has decided to flip the script and go mobile! Apparently, the once desktop-focused Russian hacking group is now “appsolutely” serious about keeping up with the times by unleashing two new Android spyware tools, BoneSpy and PlainGnome. Who knew espionage could fit in your pocket?

Key Points:

  • Gamaredon, a Russia-linked threat actor, has introduced two new Android spyware tools: BoneSpy and PlainGnome.
  • The malware targets Russian-speaking victims in former Soviet states like Uzbekistan and Kazakhstan.
  • BoneSpy is a standalone app, while PlainGnome acts as a dropper for additional surveillance tools.
  • The spyware gathers extensive personal data, from SMS messages and call logs to photos and location.
  • Gamaredon employs dynamic DNS providers and shared IP addresses as part of its command-and-control strategy.

Membership Required

 You must be a member to access this content.

View Membership Levels
Already a member? Log in here
The Nimble Nerd
Confessional Booth of Our Digital Sins

Okay, deep breath, let's get this over with. In the grand act of digital self-sabotage, we've littered this site with cookies. Yep, we did that. Why? So your highness can have a 'premium' experience or whatever. These traitorous cookies hide in your browser, eagerly waiting to welcome you back like a guilty dog that's just chewed your favorite shoe. And, if that's not enough, they also tattle on which parts of our sad little corner of the web you obsess over. Feels dirty, doesn't it?