Trend Micro reports on cyberattacks on technology, research and government using the Waterbear backdoor malware family, which has been linked to Chinese cyberespionage group called Earth Hundun (aka BlackTech, CIRCUIT PANDA, Palmerworm, etc.). Trend Micro describes Waterbear's attack chain (from loader to downloader) and features, as well as its latest version called Deuterbear. MITRE ATT&CK TTPs and IOC listed. πŸ”— https://www.trendmicro.com/en_us/research/24/d/earth-hundun-waterbear-deuterbear.html

#cyberespionage #BlackTech #threatintel #China #IOC #EarthHundun #Waterbear #Deuterbear

Cyberespionage Group Earth Hundun's Continuous Refinement of Waterbear and Deuterbear

Our blog entry provides an in-depth analysis of Earth Hundun's Waterbear and Deuterbear malware.

Trend Micro