Sophisticated TA4922 Cybercrime Operations Expand Globally
ID: 9e91e094-e0ba-571b-bdc1-f543f7a275b2
STIX ID: report--9e91e094-e0ba-571b-bdc1-f543f7a275b2
Feed Name: securityonline.info
Threat Score
Proofpoint analysis describes TA4922, a high-tempo Chinese-speaking cybercrime group running widespread financially motivated campaigns that use sophisticated loaders (RomulusLoader), an AI-assisted Python stealer (SilentRunLoader), a modular Atlas RAT, and a heavily modified Winos4.0 to evade detection; operators leverage localized social engineering and shift communications to messaging platforms to extend influence and avoid email gateway visibility.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
