logo

Researchers Warn of Chinese-Aligned Hackers Targeting South China Sea Countries

ID: a9aa1a98-5ec7-5b59-b749-5e4d46d8ad7e

STIX ID: report--a9aa1a98-5ec7-5b59-b749-5e4d46d8ad7e

Feed Name: The Hacker News

Threat Score
85/100

Date Published: 2024-05-22

Date Updated: 2026-05-05

Author: [email protected] (The Hacker News)

...
...

Bitdefender describes an espionage-focused threat actor, "Unfading Sea Haze," active since 2018 that targeted military and government organizations in South China Sea countries using spear-phishing LNK archives, MSBuild-based fileless payloads, scheduled tasks and account manipulation for persistence, and a mix of custom and commodity tools (multiple Gh0st RAT variants, loaders, keyloggers, browser stealers, RMM abuse and Zulip-backed command channels) to perform targeted data collection and manual exfiltration.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.