Minacce · 197 giorni fa
Palo Alto Networks Unit 42 attribuisce a CL-STA-1087 una campagna di cyber espionage. L'attività, attiva dal 2020, ha mantenuto accesso prolungato ai network di organizzazioni militari del Sudest asiatico. Gli operatori hanno raccolto file su capacità militari e C4I e usato AppleChris, MemFun, Getpass, PowerShell, WMI e DLL hijacking.
2 fonti che coprono questa storia
Chinese Hackers Owned Southeast Asian Military Orgs for Years
Researchers uncovered an extensive cyber espionage campaign that used novel backdoors and familiar evasion techniques to maintain persistent access.
China-Linked Hackers Hit Asian Militaries in Patient Espionage Operation
The state-sponsored hackers deployed custom tools and stayed dormant in the compromised environments for months.
Part of the PlainSec briefing for 2026-03-17