Confucius Hackers Hit Pakistan With New WooperStealer and Anondoor Malware
A recent phishing effort targeting Pakistan using malware families like WooperStealer and Anondoor has been linked to the threat actor known as Confucius.
According to Cara Lin, a researcher at Fortinet FortiGuard Labs, Confucius has frequently used spear-phishing and malicious documents as first access vectors to target government offices, military groups, defense contractors, and vital businesses during the past ten years, particularly in Pakistan.
An established hacker collective known as Confucius is thought to have been active in South Asia since 2013. The threat actor's use of the Python-based backdoor Anondoor in recent campaigns indicates a development in the group's technological agility and tradecraft.
Sometime in December 2024, one of the attack chains that Fortinet re...

