DoNot Team is a threat actor that conducted a targeted cyber espionage operation against Bangladesh's military and defence establishments using spear-phishing emails with a malware-laced RTF document to drop a DLL implant. The attack used remote template injection, geofencing, and callback-based API abuse.