Trend Micro researchers detail Earth Krahang, a China-linked APT campaign that has breached 70 organizations in 23 countries and is potentially linked to I-Soon
A sophisticated hacking campaign attributed to a Chinese Advanced Persistent Threat (APT) group known as 'Earth Krahang …
BleepingComputer Bill Toulas
Related Coverage
- Earth Krahang Exploits Intergovernmental Trust to Launch Cross-Government Attacks Trend Micro
- Chinese APT Hacks 48 Government Organizations SecurityWeek · Ionut Arghire
- Chinese APT ‘Earth Krahang’ Compromises 48 Gov't Orgs on 5 Continents Dark Reading · Nate Nelson
- Earth Krahang APT breached tens of government organizations worldwide Security Affairs · Pierluigi Paganini
- Prolific Chinese Threat Campaign Targets 100+ Victims Infosecurity · Phil Muncaster
- New Countries Join Biden's Anti-Spyware Initiative as US Government Targets Grow Metacurity · Cynthia Brumfield
- China-linked hackers target governments and more in Southeast Asia with new backdoors The Record · Daryna Antoniuk
- China's I-Soon-linked threat group hit 70 organisations in 45 countries The Stack
- Earth Krahang campaign compromised government servers in 23 countries SC Media · Simon Hendery
- Trend Micro Spots Possible iSoon Campaign GovInfoSecurity.com · Mihir Bagwe
- Trend Micro reports on a new China-nexus cyberespionage group (dubbed Earth Krahang) that primarily targets Southeast Asia and then Europe, America, and Africa. It has multiple connections to another Chinese APT Earth Lusca (aka Aquatic Panda, Bronze University, Charcoal Typhoon, RedHotel) and potential links to i-SOON. … @simontsui@infosec.exchange
- The threat actors were exploiting command execution vulnerabilities in OpenFire (CVE-2023-32315) and Oracle Web Applications Desktop Integrator (CVE-2022-21587)." #cybersecurity #infosec #opensource — Trend Micro: Chinese APT #EarthKrahang Hacks 48 Government Organizations worldwide https://www.securityweek.com/ ... @SecurityWeek … @AAKL@noc.social · Aida Akl
Discussion
-
@campuscodi@mastodon.social
Catalin Cimpanu
on mastodon
Trend Micro has linked a new Chinese APT group (Earth Krahang) to Chinese cyber contractor i-SOON — “Our previous report suggests Earth Lusca might be the penetration team behind the Chinese company I-Soon, which had their information leaked on GitHub recently. …
-
@trendmicrorsrch
@trendmicrorsrch
on x
Trend Micro researchers have been observing a threat actor dubbed Earth Krahang. This APT group targets governments worldwide, using techniques like #spearphishing and brute force attacks to infiltrate networks and conduct espionage. Learn more here: ⬇️ https://research.trendmicr…
-
@thehellu
Daniel Lunghi
on x
Our latest report on a CN #APT targeting tens of governments entities worldwide has been published 🥳 After monitoring it for a long time we realized it is likely related to the recent I-Soon company leaks. It discusses their TTPs and provides lots of IOCs https://www.trendmicro.c…
-
@virusbtn
@virusbtn
on x
Trend Micro's @jspchc & @thehellu look into a new APT campaign, named Earth Krahang, targeting several government entities worldwide, with a strong focus on Southeast Asia. Their investigation identified multiple links between Earth Krahang & Earth Lusca. https://www.trendmicro.c…