Chinese Threat Clusters Triple-Team High-Profile Asia Government Org
ID: 91010740-8c8b-5bfa-b080-1bd04638d7f0
STIX ID: report--91010740-8c8b-5bfa-b080-1bd04638d7f0
Feed Name: Dark Reading
Threat Score
Sophos researchers uncovered "Operation Crimson Palace," a coordinated set of Chinese state-aligned threat clusters that from 2022–2024 compromised a Southeast Asian government, using DLL sideloading, multiple novel backdoors (including Nupakage, variants of Eagerbee, CCoreDoor, and PocoProxy), credential theft, and lateral movement to exfiltrate large volumes of sensitive military and political documents.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
