Operation Diànxùn: Cyberespionage Campaign Targeting Telecommunication Companies
ID: 2a66b3a5-3137-5697-8573-fe49623045ed
STIX ID: report--2a66b3a5-3137-5697-8573-fe49623045ed
Feed Name: McAfee Labs Blog
This McAfee ATR report details Operation Diànxùn, an espionage campaign that targeted telecommunications firms in Southeast Asia, Europe, and the US by luring victims to phishing domains mimicking Huawei career pages to deliver malware (masquerading as Flash) and deploy Cobalt Strike beacons; the report links the campaign to Chinese-linked groups RedDelta and Mustang Panda, provides IoCs (e.g., update.careerhuawei.net, update.huaweiyuncdn.com, flach.cn), and recommends multilayer defenses and McAfee product protections.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
