June 22, 2023
1 min read

China-linked APT groups dominate nation-state threat activity

Despite efforts in 2022 to make it more difficult for threat actors to abuse the tool, the Cobalt Strike tool grows in popularity among cybercriminals and ransomware actors….reports Asian Lite News

China-linked APT groups, including Mustang Panda and UNC4191, are the most active in targeting nation-states, producing nearly 79 per cent of all detected threat activity in the first quarter of 2023, a new report showed on Wednesday.

According to the cybersecurity company Trellix, APT groups will continue cyber espionage and disruptive cyberattacks in tandem with physical military activity.

“For both leading and developing countries, we see risks to critical infrastructures like telecommunications, energy, and manufacturing by notable APT groups — a warning to public and private organisations to deploy modern protections to stay ahead of rapidly evolving threats,” said John Fokker, Head of Threat Intelligence, Trellix Advanced Research Center.

Moreover, the report said that motivations for ransomware are still financial — reflected in the Insurance (20 per cent) and Financial Services (17 per cent) sectors having the most detections of potential attacks.

The most common leak site victims are US-based (48 per cent) mid-sized businesses with 51-200 employees (32 per cent) and $10-50M in revenue (38 per cent).

Despite efforts in 2022 to make it more difficult for threat actors to abuse the tool, the Cobalt Strike tool grows in popularity among cybercriminals and ransomware actors.

The report found Cobalt Strike in 35 per cent of nation-state activity and 28 per cent of ransomware incidents, nearly doubling from the fourth quarter of 2022.

Further, the report mentioned that attacks on Amazon, Microsoft, and Google’s cloud infrastructure are on the rise.

Though more sophisticated attacks involving multifactor authentication, proxy penetration, and API execution continue, the dominant attack technique employs valid accounts, with valid accounts accounting for twice as many detections as any other vector.

ALSO READ: India slams China for blocking ‘terror tag’ on Sajid Mir

Previous Story

Gen Munir joins council formed for economic revival

Next Story

Microsoft to build quantum supercomputers

Latest from -Top News

Multi-alignment, upgraded

With US ties strained and China tense, New Delhi taps Europe’s harder edge for co-development, clean tech and strategic autonomy, writes Manoj Menon India is recalibrating its great-power hedging as frictions with

India-EU Trade Deal Breakthrough Soon?

Negotiators report increased momentum in discussions, which have been given a boost from US President Donald Trump’s tariff offensive…reports Asian Lite News India and the European Union aim to finalise a trade

Europe Seeks Peace in Gaza

European countries condemn Israeli interception of Gaza-bound flotilla, demand safety of citizens…reports Asian Lite News Israel’s interception of an international flotilla carrying humanitarian aid to Gaza has sparked condemnation across Europe, with

GAZA: Egypt to Host Peace Talks

Egypt hopes the discussions will help “end the war and the suffering of the brotherly Palestinian people, which has continued for two consecutive years…reports Asian Lite News Egypt will host Israeli and

‘My Injuries Made Me’

During his four-year battle with injury, the incumbent fast bowling spearhead made occasional appearances but couldn’t bear the workload and demands of red-ball cricket….reports Asian Lite News England tearaway Jofra Archer believes
Go toTop

Don't Miss

Shanghai eases indoor Covid curbs

The new measures have been announced in Shanghai after China

MI5 warns lawmakers over Chinese agent

Patel said it was “deeply concerning” that an individual working