According to Kaspersky, a new campaign called PassiveNeuron is aimed at government, financial, and industrial entities in Asia, Africa, and Latin America.
The Russian cybersecurity provider initially discovered the cyber espionage operation in November 2024 when it revealed a series of attacks targeting government organizations in East Asia and Latin America in June that used previously unheard-of malware families known as Neursite and NeuralExecutor.
Additionally, it stated that the operation was highly sophisticated and that the threat actors used internal servers that had already been compromised as an intermediary command-and-control (C2) infrastructure in order to evade detection.
According to Kaspersky at the time, the threat actor can travel laterally through the infrastructure and exfiltrate data. They can even choose to create virtual networks, which enables attackers to take files of interest from computers that are not connected to the internet read more about Researchers Identify PassiveNeuron APT Using Neursite and NeuralExecutor Malware.
Get up to date on the latest cybersecurity news and enhance your knowledge of cybersecurity with our thorough coverage of the dangers, breaches, and solutions.
