Torrent of Threats: China-Nexus APT UAT-9244 Hijacks South American Telecoms with PeerTime Backdoor
ID: d9604c9b-ebd4-5bb3-8787-3da0c8da786b
STIX ID: report--d9604c9b-ebd4-5bb3-8787-3da0c8da786b
Feed Name: securityonline.info
**Executive summary:** Cisco Talos attributes a China-linked APT dubbed UAT-9244 to an ongoing espionage campaign (active since at least 2024) against South American telecommunications providers, using a suite of sophisticated tools—TernDoor (Windows DLL-sideloading backdoor), PeerTime (ELF backdoor that hides C2 in BitTorrent traffic), and BruteEntry (edge-device brute-force scanner/relay)—to compromise edge devices, harvest credentials, enable lateral movement, and maintain stealthy, long-term access to critical infrastructure.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
