news.mlab.sh
Back to the feed
threat-intel

Chinese-Speaking APT Deploys New TinyRCT Backdoor in Southeast Asia Campaign

High
Image: The Hacker News
Summary

A Chinese-speaking Advanced Persistent Threat (APT) group, CL-STA-1062, has been actively targeting government entities and critical infrastructure in Southeast Asia since 2022, utilizing a new custom backdoor called TinyRCT. The group employs a hybrid toolkit combining open-source tools with bespoke malware, including web shells and a .NET backdoor, to gain access and exfiltrate data from vulnerable organizations. This activity highlights a sustained threat to the region’s critical infrastructure.

Read the full article at The Hacker News

Summary written automatically in our own words from the original article, which belongs to its publisher and remains the reference. It may contain errors. Sources & data

Report an error
Confirmed errors are fixed and listed on /corrections.