I'm currently doing a writeup on the I-S00N Chinese government spyware data leak in real time over on the bird site. Buckle up there are a lot of juicy information.
https://twitter.com/AzakaSekai_/status/1759326049262019025
I'm done typing out most of the details from this ONE pdf file on the bird site. Key highlights includes
- Twitter information dumper (DMs, email, phone number, etc.)
- RATs designed for Windows, macOS, Linux, iOS, and Android.
- Claims to support all iOS versions without jailbreaking (keep in mind this was in 2020 - not sure if it still applies).
- Specifically crafted devices for attacking internal networks, designed with portability in mind.
- Specialized hardware for agents working overseas to establish a Tor-like network.
- APT attack scenario framework
- "Skywalker": User lookup database used to look up IRL user data including phone number, name, email, etc.; the said data can then be fed into an in-development system to look up their Twitter, Facebook, etc.
Please do go through the Twitter post, as there are a lot more screenshots there for this specific document.
All of this information was found in a product manual dated 2020 in the leak.
> Please double check if the 4 organizations are correct:
> afaps.mail.go.th Army Headquarters
> asean2019.go.th Association of South‐East Asian Nations
> navy.mail.go.th Ministry of Defense Navy
> railway.co.th Thailand Railway
> There are multiple 数字经济与社会部, please check which one do you want:
Data sheet, presumably containing the records for each of the listed companies.
> Myanmar MPT Telecommunication - 11GB - user information, including phone number and name
> Vietnam Airlines - 1004MB - user flight information, including passenger ID, work title, destinations, etc.
> Vietnam unnamed company - 38.9MB - user information including address, email address, password, login details, names, etc.
> Myanmar unnamed company - 4.03GB - phone numbers etc.
"client says NATO might not be possible"
Edit: Part 2 https://infosec.exchange/@still/111954965043069948
@still I think everyone is missing the good stuff.
Look at the BEELINE files.