Pakistan-linked Hackers Deploy Python, Golang, and Rust Malware on Indian Targets
ID: adb8aa51-a264-5cc8-8826-d27d19f79d1f
STIX ID: report--adb8aa51-a264-5cc8-8826-d27d19f79d1f
Feed Name: The Hacker News
Threat Score
Transparent Tribe (APT36) conducted spear-phishing campaigns from late 2023 through April 2024 against Indian government, defense, and aerospace targets, deploying cross-platform espionage tooling (Python/Golang/Rust) such as GLOBSHELL and PYSHELLFOX, abusing services like Discord, Google Drive, Slack, and Telegram for C2 and distribution, and using ISO/ZIP lures and identified infrastructure (e.g., apsdelhicantt.in) to exfiltrate sensitive files.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
