threat-intel
Chinese-Speaking APT Deploys New TinyRCT Backdoor in Southeast Asia Campaign
High
Summary
A Chinese-speaking Advanced Persistent Threat (APT) group, CL-STA-1062, has been actively targeting government entities and critical infrastructure in Southeast Asia since 2022, utilizing a new custom backdoor called TinyRCT. The group employs a hybrid toolkit combining open-source tools with bespoke malware, including web shells and a .NET backdoor, to gain access and exfiltrate data from vulnerable organizations. This activity highlights a sustained threat to the region’s critical infrastructure.
Summary written automatically in our own words from the original article, which belongs to its publisher and remains the reference. It may contain errors. Sources & data
