logo

South Asian hackers target Pakistani entities in new espionage campaign

ID: 6bf6c944-da22-50a7-b7db-7a8ad670dd03

STIX ID: report--6bf6c944-da22-50a7-b7db-7a8ad670dd03

Feed Name: The Record from Recorded Future News

Threat Score
72/100

Date Published: 2024-11-25

Date Updated: 2026-05-01

...
...

Mysterious Elephant (APT-K-47), active since 2022 and likely South Asia–linked, has been observed targeting Pakistani entities in an espionage campaign that uses an upgraded Asyncshell backdoor delivered via phishing (encrypted ZIPs with password files) and decoy documents hosted on a Pakistani ministry site; the report links the group’s tooling and behavior to other India-linked state-sponsored actors and notes prior victimization across Pakistan, Bangladesh, and Turkey.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.