#centralasia — Public Fediverse posts
Live and recent posts from across the Fediverse tagged #centralasia, aggregated by home.social.
-
SilkParasite: Tracking a China-Nexus APT Across Central Asia
SilkParasite is a cyberespionage operation assessed with medium confidence as China-nexus that targeted government bodies across Central Asia. Seven remote access tool families were deployed, five of which were previously undocumented: DriveSilkRAT, CookiETagRAT, NomadRAT, GoginRAT, and NodeEdgeRAT. The toolset is small, modular, and professionally engineered with traces of AI-assisted development. Initial access occurred through malicious Microsoft Office documents delivered via spear-phishing, using regionally tailored lures impersonating government ministries. The operation leveraged DLL sideloading as the primary delivery mechanism and used Google Drive for command-and-control communications to hide within trusted services. Infrastructure analysis identified connections to China Unicom's backbone network, and operational patterns suggest a functioning software organization with maintained build pipelines and careful operational security.
Pulse ID: 6a86a70eb8b57f155e62d4f7
Pulse Link: https://otx.alienvault.com/pulse/6a86a70eb8b57f155e62d4f7
Pulse Author: AlienVault
Created: 2026-08-20 07:04:46Be advised, this data is unverified and should be considered preliminary. Always do further verification.
#Asia #CentralAsia #China #CyberSecurity #Cyberespionage #DRat #Edge #Espionage #Google #Government #InfoSec #Microsoft #MicrosoftOffice #OTX #Office #OpenThreatExchange #Phishing #RAT #Rust #SideLoading #SpearPhishing #bot #AlienVault
-
Map: Iran And Turan 1843
"German "Map of Iran and Turan", dated 1843 (during the Qajar dynasty), Turan territory indicated by orange line (here enhanced)."
#History #Histodons #C19th #19thCentury #Map #Maps #Cartography #Iran #CentralAsia #Asia
#Image attribution: Map by Stieler, 1843, Public domain, via Wikimedia Commons. Page URL: https://commons.wikimedia.org/wiki/File:Iran_Turan_map_1843.jpg.
-
Central Asia’s internet can change the moment you cross a border, with censorship ranging from selective blocking to a black market for access to the open web https://ow.ly/k6tr50ZyUIf #InternetFreedom #Censorship #DigitalRights #InternetAccess #CentralAsia
Internet Restrictions in Centr... -
Eight Uzbek citizens and one Tajik were killed in a drone attack on Nizhnekamsk, drawing Central Asia deeper into the human cost of Russia’s war https://ow.ly/jtev50ZyqEC #Nizhnekamsk #UkraineWar #MigrantWorkers #CentralAsia #DroneAttack #HumanCost #Uzbekistan #Tajikistan
Uzbekistan Forms Commission Af... -
Work with us: We are hiring a Doctoral Researcher/Economist (f/m/d) to join our international team of excellent researchers.
Focus on empirical #Economics with a regional lens on Eastern & #SoutheasternEurope, #CentralAsia and/or the #SouthCaucasus.
📅 Deadline: August 31
➡️ https://leibniz-ios.de/en/vacancies-and-internships/details/doctoral-researcher-economist -
MENA News Highlights - Aug. 10 ‘26 - Zuhur News #351 on:
#Ireland-#UAE #Iran #Gaza #Syria #Lebanon #Aramco #SaudiArabia #Pakistan #Turkey #Yemen #Sudan #CentralAsia #Niqab Subscriptions appreciated.https://www.patreon.com/posts/166318511?utm_campaign=postshare_creator
-
Sunday Special – Bukhara, Uzbekistan
Bukhara, Uzbekistan conjures images of ancient structures holding stories of a time long-past. Sunday Special aims to inspire and seek beauty in the world with locales chosen from those that interest me or from my own travels.https://wanderstheworld.com/2026/08/09/sunday-special-bukhara-uzbekistan/
-
Analysis of a Modular Cyber Espionage Framework
Security researchers have uncovered a sophisticated cyber espionage operation deploying two previously undocumented malware families, OctLurk and SilkLurk, targeting government and public-sector organizations across Central Asia and the Middle East. Both modular backdoors utilize victim-specific decryption mechanisms, extensive obfuscation, and in-memory execution to evade detection. The malware enables credential theft, remote access, network reconnaissance, and plugin-based expansion. Operations began in January 2025, affecting entities in Afghanistan, Kazakhstan, Kyrgyzstan, Syria, Tajikistan, and Uzbekistan. Victims include government offices, foreign affairs ministries, law enforcement agencies, healthcare providers, logistics organizations, research institutions, urban planning facilities, and educational establishments. Attackers deployed additional tools including Impacket's SecretsDump, Browser Password Decryptor, Pandora RC, Fscan, WinRAR, 7-Zip, and PlugX. A companion utility, LurkProxy, proxies a
Pulse ID: 6a75b204c9420179df545451
Pulse Link: https://otx.alienvault.com/pulse/6a75b204c9420179df545451
Pulse Author: AlienVault
Created: 2026-08-07 10:23:00Be advised, this data is unverified and should be considered preliminary. Always do further verification.
#Afghanistan #Asia #BackDoor #Browser #CentralAsia #CyberSecurity #Education #Espionage #Government #Healthcare #ICS #InfoSec #Kazakhstan #LawEnforcement #Malware #MiddleEast #OTX #Office #OpenThreatExchange #Password #PlugX #Proxy #RAT #RCE #SMS #Syria #WinRAR #Word #ZIP #bot #AlienVault
-
Bride kidnapping remains a hidden form of gender-based violence across Central Asia, where silence and social pressure still shield a crime from justice https://ow.ly/ic4o50Zx5gH #ForcedMarriage #WomensRights #GenderBasedViolence #Justice #BrideKidnapping #CentralAsia
Bride Kidnapping in Central As... -
Targeted Attack on Government Entities in the Middle East | Part 2
A sophisticated multi-stage campaign targets government entities in the Middle East, deploying BINDCLOAK, a previously undocumented 64-bit modular Windows backdoor written in C++. BINDCLOAK is decrypted and reflectively loaded by MIXEDKEY loader as part of a complex attack chain. The backdoor employs advanced techniques including a complex message routing mechanism for C2 communications, EDR evasion to prevent detection of API calls from unbacked executable memory regions, and token manipulation for privilege escalation. Code similarities and shared infrastructure directly connect this activity to the OctLurk backdoor, representing an expansion from Central Asia operations to Middle East targeting with focus on energy sector. The threat actor demonstrates sophisticated development capabilities through custom encryption, modular plugin architecture, and careful operational security measures.
Pulse ID: 6a710a5c190ae98a3d9c1be1
Pulse Link: https://otx.alienvault.com/pulse/6a710a5c190ae98a3d9c1be1
Pulse Author: AlienVault
Created: 2026-08-03 21:38:36Be advised, this data is unverified and should be considered preliminary. Always do further verification.
#Asia #BackDoor #CentralAsia #CyberSecurity #EDR #Encryption #Government #InfoSec #MiddleEast #OTX #OpenThreatExchange #RAT #Windows #bot #AlienVault
-
OctLurk and SilkLurk: new Backdoors in Central Asia
Pulse ID: 6a701fa96557dec6e8ebe7bf
Pulse Link: https://otx.alienvault.com/pulse/6a701fa96557dec6e8ebe7bf
Pulse Author: Tr1sa111
Created: 2026-08-03 04:57:13Be advised, this data is unverified and should be considered preliminary. Always do further verification.
#Asia #BackDoor #CentralAsia #CyberSecurity #InfoSec #OTX #OpenThreatExchange #bot #Tr1sa111
-
University of New Hampshire: Lotte Jacobi Travel Photographs Now Online. “The University of New Hampshire Library has completed the digitization of thousands of photographs taken by renowned photographer Lotte Jacobi during a 1932-1933 trip to the Soviet Union and Central Asia. These photographs, along with Jacobi’s travel journal, are now available through the library’s Digital Collections.”
https://rbfirehose.com/2026/08/02/university-of-new-hampshire-lotte-jacobi-travel-photographs-now-online/ -
OctLurk and SilkLurk: new Backdoors in Central Asia
Two newly identified backdoors, OctLurk and SilkLurk, have been targeting government organizations across Central Asia since January 2025. Victims span Afghanistan, Kyrgyzstan, Tajikistan, Uzbekistan, Kazakhstan, and Syria, affecting healthcare, research, government offices, ministries of foreign affairs, logistics, law enforcement, urban planning, and educational institutions. Both backdoors employ heavily obfuscated loaders customized per victim, using machine-specific data for decryption. They deploy multiple plugins for command execution, file manipulation, credential harvesting, keylogging, network scanning, and remote access. The attackers also utilized LurkProxy for network traffic proxying and deployed additional tools including PlugX, Impacket, FSCAN, and Pandora FMS agents. Analysis indicates both backdoors are operated by the same Chinese-speaking threat actor, though attribution to a specific known group remains unconfirmed. The campaigns demonstrate sophisticated persistence mechanisms and ext...
Pulse ID: 6a6b4b97df5f9df74333adfa
Pulse Link: https://otx.alienvault.com/pulse/6a6b4b97df5f9df74333adfa
Pulse Author: AlienVault
Created: 2026-07-30 13:03:19Be advised, this data is unverified and should be considered preliminary. Always do further verification.
#Afghanistan #Asia #BackDoor #CentralAsia #Chinese #CredentialHarvesting #CyberSecurity #Education #Government #Healthcare #ICS #InfoSec #Kazakhstan #LawEnforcement #Mac #OTX #Office #OpenThreatExchange #PlugX #Proxy #RAT #RCE #SMS #Syria #bot #AlienVault