logo

APT27

ID: 4790138f-10b2-51ec-89b1-38ef6132efe7

STIX ID: report--4790138f-10b2-51ec-89b1-38ef6132efe7

Feed Name: Brandefense Blog

Threat Score
90/100

Date Published: 2026-01-31

Date Updated: 2026-04-27

Author: BRANDEFENSE

...
...

This report profiles APT27, a China-aligned advanced persistent threat active since at least 2012 and through 2025, that conducts long-term cyber-espionage against governments, defense contractors, critical infrastructure, telecoms, and research organizations across Asia, Europe, and North America; it describes spearphishing, exploit-driven access, credential-harvesting portals, RATs (PlugX, HyperBro), custom loaders, web shells, DLL side‑loading, distributed encrypted C2, and improved OPSEC and target selection.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.