Threats · 185 days ago
Unit 42 links CL-STA-1087 to a long-running espionage campaign against Southeast Asian militaries. The group used AppleChris and MemFun backdoors and a Getpass credential harvester to collect sensitive military documents and credentials.
1 source covering this story
Chinese Hackers Target Southeast Asian Militaries with AppleChris and MemFun Malware
China-linked CL-STA-1087 targets Southeast Asian militaries since 2020 using AppleChris and MemFun for espionage and credential theft.
Part of the PlainSec briefing for 2026-03-14