#cyberespionage — Public Fediverse posts
Live and recent posts from across the Fediverse tagged #cyberespionage, aggregated by home.social.
-
SilkParasite: Tracking a China-Nexus APT Across Central Asia
SilkParasite is a cyberespionage operation assessed with medium confidence as China-nexus that targeted government bodies across Central Asia. Seven remote access tool families were deployed, five of which were previously undocumented: DriveSilkRAT, CookiETagRAT, NomadRAT, GoginRAT, and NodeEdgeRAT. The toolset is small, modular, and professionally engineered with traces of AI-assisted development. Initial access occurred through malicious Microsoft Office documents delivered via spear-phishing, using regionally tailored lures impersonating government ministries. The operation leveraged DLL sideloading as the primary delivery mechanism and used Google Drive for command-and-control communications to hide within trusted services. Infrastructure analysis identified connections to China Unicom's backbone network, and operational patterns suggest a functioning software organization with maintained build pipelines and careful operational security.
Pulse ID: 6a86a70eb8b57f155e62d4f7
Pulse Link: https://otx.alienvault.com/pulse/6a86a70eb8b57f155e62d4f7
Pulse Author: AlienVault
Created: 2026-08-20 07:04:46Be advised, this data is unverified and should be considered preliminary. Always do further verification.
#Asia #CentralAsia #China #CyberSecurity #Cyberespionage #DRat #Edge #Espionage #Google #Government #InfoSec #Microsoft #MicrosoftOffice #OTX #Office #OpenThreatExchange #Phishing #RAT #Rust #SideLoading #SpearPhishing #bot #AlienVault
-
North Korean hackers are using Google’s own tools to remotely wipe Android devices and hijack messaging apps. Think your account is safe? Dive into how a single breach can trigger a digital meltdown.
#konni
#apt37
#cyberespionage
#androidsecurity
#googlefindhub
#malware
#northkorea
#spearphishing
#infosec -
Amazon blocks APT29 campaign targeting Microsoft device code authentication – Source: securityaffairs.com https://ciso2ciso.com/amazon-blocks-apt29-campaign-targeting-microsoft-device-code-authentication-source-securityaffairs-com/ #rssfeedpostgeneratorecho #informationsecuritynews #ITInformationSecurity #SecurityAffairscom #CyberSecurityNews #PierluigiPaganini #SecurityAffairs #SecurityAffairs #Cyberespionage #BreakingNews #Intelligence #SecurityNews #hackingnews #hacking #Amazon #Russia #APT29
-
North Korea’s 🇰🇵 IT worker scams are getting more sophisticated, while Western defenses remain reactive. Over 1,000 emails and new personas tied to DPRK operatives have been exposed, revealing lavish lifestyles, AI-generated fake identities, and state-level monitoring.
TL;DR
🕵️ Researchers exposed key operatives and email networks
🧠 DPRK IT workers use AI, stolen IDs, and fake personas
🎭 Operatives get autonomy, luxury, and state protection
📡 Internal surveillance and quotas drive risky behaviorhttps://www.wired.com/story/north-korean-it-worker-scams-exposed/
#nationalsecurity #cyberespionage #digitalrisk #infosecleadership #security #privacy #cloud #infosec #cybersecurity -
1,600 Victims Hit by South American APT’s Malware https://www.securityweek.com/1600-victims-hit-by-south-american-apts-malware/ #cyberespionage #Nation-State #SouthAmerica #BlindEagle #Colombia #APT
-
1,600 Victims Hit by South American APT’s Malware https://www.securityweek.com/1600-victims-hit-by-south-american-apts-malware/ #cyberespionage #Nation-State #SouthAmerica #BlindEagle #Colombia #APT
-
GuardZoo Android Malware Attacking military personnel via WhatsApp To Steal Sensitive Data https://gbhackers.com/guardzoo-android-malware-attacks-military/ #MiddleEastSecurity #AndroidMalware #CyberEspionage #CyberCrime #Android #Malware