logo

Torrent of Threats: China-Nexus APT UAT-9244 Hijacks South American Telecoms with PeerTime Backdoor

ID: d9604c9b-ebd4-5bb3-8787-3da0c8da786b

STIX ID: report--d9604c9b-ebd4-5bb3-8787-3da0c8da786b

Feed Name: securityonline.info

Threat Score
88/100

Date Published: 2026-03-09

Date Updated: 2026-04-23

Author: Ddos

...
...

**Executive summary:** Cisco Talos attributes a China-linked APT dubbed UAT-9244 to an ongoing espionage campaign (active since at least 2024) against South American telecommunications providers, using a suite of sophisticated tools—TernDoor (Windows DLL-sideloading backdoor), PeerTime (ELF backdoor that hides C2 in BitTorrent traffic), and BruteEntry (edge-device brute-force scanner/relay)—to compromise edge devices, harvest credentials, enable lateral movement, and maintain stealthy, long-term access to critical infrastructure.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.