Tangelo is iOS malware that is believed to be from the same developers as the Stealth Mango Android malware. It is not a mobile application, but rather a Debian package that can only run on jailbroken iOS devices. [1]
Domain | ID | Name | Use | |
---|---|---|---|---|
Mobile | T1433 | Access Call Log | ||
Mobile | T1409 | Access Stored Application Data |
Tangelo accesses databases from WhatsApp, Viber, Skype, and Line.[1] |
|
Mobile | T1429 | Capture Audio |
Tangelo contains functionality to record calls as well as the victim device's environment.[1] |
|
Mobile | T1412 | Capture SMS Messages | ||
Mobile | T1533 | Data from Local System | ||
Mobile | T1430 | Location Tracking |
Tangelo contains functionality to gather GPS coordinates.[1] |
|
Mobile | T1422 | System Network Configuration Discovery |