Earth Alux APT Group: Unveiling Its Espionage Toolkit
ID: 8a070910-6ead-5a77-be43-bc5c8cc654cf
STIX ID: report--8a070910-6ead-5a77-be43-bc5c8cc654cf
Feed Name: securityonline.info
Threat Score
Trend Micro researchers describe Earth Alux, a China-linked, highly sophisticated APT conducting espionage across Asia‑Pacific and Latin America using multi-stage backdoors (VARGEIT, COBEACON), DLL sideloading, timestomping, MSPaint-based fileless injection, and covert C2 via Microsoft Graph/Outlook to exfiltrate sensitive data to cloud storage.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
