Researchers Warn of Chinese-Aligned Hackers Targeting South China Sea Countries
ID: a9aa1a98-5ec7-5b59-b749-5e4d46d8ad7e
STIX ID: report--a9aa1a98-5ec7-5b59-b749-5e4d46d8ad7e
Feed Name: The Hacker News
Bitdefender describes an espionage-focused threat actor, "Unfading Sea Haze," active since 2018 that targeted military and government organizations in South China Sea countries using spear-phishing LNK archives, MSBuild-based fileless payloads, scheduled tasks and account manipulation for persistence, and a mix of custom and commodity tools (multiple Gh0st RAT variants, loaders, keyloggers, browser stealers, RMM abuse and Zulip-backed command channels) to perform targeted data collection and manual exfiltration.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
