Earth Preta Evolves its Attacks with New Malware and Strategies

Trend Micro
Technical analysis of China-linked Earth Preta APT’s infection chain

China-linked Earth Preta cyberespionage group has been observed adopting new techniques to bypass security solutions. Trend Micro researchers reported that the China-linked Earth Preta group (aka Mustang Panda) is actively changing its tools, tactics, and procedures (TTPs) to bypass security solutions. Earth Preta, also known as “RedDelta” or “Bronze President,” has been active since at least […]

Security Affairs
My colleagues at #TrendMicro found that several undisclosed #malware and interesting tools used for #exfiltration purposes were being used by #EarthPreta. In this article they will introduce and analyze the tools and malware used by the #threat actor: https://www.trendmicro.com/en_us/research/23/c/earth-preta-updated-stealthy-strategies.html #infosec #infosecurity #APT
Earth Preta Updated Stealthy Strategies

After months of investigation, we found that several undisclosed malware and interesting tools used for exfiltration purposes were being used by Earth Preta. We also observed that the threat actors were actively changing their tools, tactics, and procedures (TTPs) to bypass security solutions. In this blog entry, we will introduce and analyze the other tools and malware used by the threat actor.

Trend Micro
#TrendMicro breaks down the #cyberespionage activities of advanced persistent threat (#APT) group #EarthPreta, observed in large-scale attack deployments that began in March. Learn more: https://www.trendmicro.com/en_us/research/22/k/earth-preta-spear-phishing-governments-worldwide.html #malware #infosec #spearphishing #emailsecurity
Earth Preta Spear-Phishing Governments Worldwide

Trend Micro