logo

Chinese Threat Clusters Triple-Team High-Profile Asia Government Org

ID: 91010740-8c8b-5bfa-b080-1bd04638d7f0

STIX ID: report--91010740-8c8b-5bfa-b080-1bd04638d7f0

Feed Name: Dark Reading

Threat Score
90/100

Date Published: 2024-06-05

Date Updated: 2026-04-21

Author: Nate Nelson, Contributing Writer

...
...

Sophos researchers uncovered "Operation Crimson Palace," a coordinated set of Chinese state-aligned threat clusters that from 2022–2024 compromised a Southeast Asian government, using DLL sideloading, multiple novel backdoors (including Nupakage, variants of Eagerbee, CCoreDoor, and PocoProxy), credential theft, and lateral movement to exfiltrate large volumes of sensitive military and political documents.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.