Operation Peek-a-Baku: Silent Lynx APT makes sluggish shift to Dushanbe
ID: d910ecf2-eba7-5a05-8af9-68a296490fd6
STIX ID: report--d910ecf2-eba7-5a05-8af9-68a296490fd6
Feed Name: Seqrite Blog
Seqrite Labs' report details Operation "Peek-A-Baku," attributed to the APT group "Silent Lynx," which used spear-phishing RAR/LNK artifacts and multiple stagers (PowerShell, LNK, C++ implants, .NET loaders) to deploy reverse shells and tunneling tools (Ligolo-ng/RESOCKS) against diplomatic and infrastructure targets in Central Asia, Russia and China. The analysis includes technical breakdowns of implants (Silent Loader, Laplas, SilentSweeper), persistence and scheduling techniques, infrastructure pivots (GitHub-hosted stagers and listed C2 IPs/hosts), a comprehensive IOC table (hashes and hosts), and MITRE ATT&CK mappings to support detection and hunting.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
