Using previously undiscovered malware and the Atlas backdoor, a Chinese-speaking cybercrime ring has extended its targeting to the European region.
The threat actor, identified as TA4922, is linked to financially driven attacks that target networks in order to commit fraud, steal data, and sell access.
While TA4922 has traditionally targeted East Asian organizations, more recent attacks have concentrated on organizations in Germany, Italy, the UK, and South Africa.
TA4922 shares have similarities with behavior previously described as “Silver Fox” and “Void Arachne,” according to researchers at cybersecurity firm Proofpoint. However, because it is more consistent with cybercrime than espionage, the activity cluster is monitored independently.
The activity of TA4922 has expanded significantly since March, and since April, it has demonstrated a high tempo and exceptional operational diversity read more about Chinese hackers use new Atlas RAT malware in European cyberattacks.
Get up to date on the latest cybersecurity news and enhance your knowledge of cybersecurity with our thorough coverage of the dangers, breaches, and solutions.
