Threats & Adversaries · APT / Espionage
Unit 42 links CL-STA-1087 to a long-running espionage campaign against Southeast Asian militaries. The group used AppleChris and MemFun backdoors and a Getpass credential harvester to collect sensitive military documents and credentials.
1 source · Mar 14
The Hacker News
Chinese Hackers Target Southeast Asian Militaries with AppleChris and MemFun Malware
China-linked CL-STA-1087 targets Southeast Asian militaries since 2020 using AppleChris and MemFun for espionage and credential theft.
originalPart of the PlainSec briefing for 2026-03-14
Every edition of this story: China-Linked Hackers Target Southeast Asian Militaries