Source |
CybeReason |
Identifiant |
2721691 |
Date de publication |
2021-04-30 12:11:34 (vue: 2021-04-30 13:05:41) |
Titre |
PortDoor: New Chinese APT Backdoor Attack Targets Russian Defense Sector |
Texte |
The Cybereason Nocturnus Team has been tracking recent developments in the RoyalRoad weaponizer, also known as the 8.t Dropper/RTF exploit builder. Over the years, this tool has become a part of the arsenal of several Chinese-related threat actors such as Tick, Tonto Team and TA428, all of which employ RoyalRoad regularly for spear-phishing in targeted attacks against high-value targets. |
Notes |
|
Envoyé |
Oui |
Condensat |
actors against all also apt arsenal attack attacks backdoor become been builder chinese cybereason defense developments dropper/rtf employ exploit has high known new nocturnus over part phishing portdoor: recent regularly related royalroad russian sector several spear such ta428 targeted targets team threat tick tonto tool tracking value weaponizer which years |
Tags |
Tool
Threat
|
Stories |
|
Move |
|