Chinese Hackers Using SugarGh0st RAT to Target South Korea and Uzbekistan

Started by ixsky,

Previous topic - Next topic

ixsky

Chinese Hackers Using SugarGh0st RAT to Target South Korea and Uzbekistan

A suspected Chinese-speaking threat actor has been attributed to a malicious campaign that targets the Uzbekistan Ministry of Foreign Affairs and South Korean users with a remote access trojan called SugarGh0st RAT.
The activity, which commenced no later than August 2023, leverages two different infection sequences to deliver the malware, which is a customized variant of Gh0st RAT 

Source: Chinese Hackers Using SugarGh0st RAT to Target South Korea and Uzbekistan