Daxin Rootkit Resurfaces in Taiwan Alongside Novel Stupig Pre-Logon Backdoor
An advanced malware previously attributed to a China-linked threat actor has resurfaced after more than four years within a Taiwan manufacturing firm,…
An advanced malware previously attributed to a China-linked threat actor has resurfaced after more than four years within a Taiwan manufacturing firm,…
Daxin (srt64.sys) is a kernel-mode rootkit first documented by Symantec in March 2022, used in targeted attacks since 2013. It monitors incoming…
TencShell is a known C2 infrastructure used by suspected China-linked threat actors. Hunt.io observed an open directory sharing identical HTTP header fingerprints…
A China-linked threat actor is responsible for deploying Daxin and Stupig malware in targeted attacks against governments, critical infrastructure, and manufacturing firms.…
A China-linked espionage group tracked as UNC6508 compromised REDCap research servers across North American medical, academic, and military institutions, stealing sensitive research…