malware
China-nexus UAT-11587 targets government and policy organizations across Asia with Antino backdoor
Medium
Summary
A China-nexus threat actor, UAT-11587, is targeting government and policy organizations across Asia, including Taiwan, India, the Philippines, and Cambodia, with a previously undocumented backdoor named ‘Antino’. The campaign has been active since September 2025 and has identified at least 10 confirmed and five probable affected institutional environments, with approximately 350 compromised endpoints across eight countries.
Summary written automatically in our own words from the original article, which belongs to its publisher and remains the reference. It may contain errors. Sources & data
