Le Lézard
Classified in: Science and technology
Subjects: TRADE SHOWS/SEMINARS/WEBINARS, MISCELLANEOUS

Anomali Threat Research Team Discovers BITTER APT Phishing Campaign Targeting People's Republic of China Government Agencies


LAS VEGAS, Aug. 08, 2019 (GLOBE NEWSWIRE) -- BLACK HAT ? Anomali, a leader in intelligence-driven cybersecurity solutions, today published its latest research report: Suspected BITTER APT Continues Targeting Government of China and Chinese Organizations

The Anomali Threat Research Team discovered this new phishing attack leveraging spoof sites that appear to be designed to steal email credentials from target victims within the government of the People's Republic of China. Although the attackers' exact motivation is unknown, it is logical to conclude that this is an espionage campaign. 

By stealing email credentials, and accessing internal email content, it would be possible for infiltrators to gain insight into decisions being made within the target organizations. Once in, threat actors could also gain access to sensitive information. 

Attack victims are members of staff for the organizations being targeted. Most of the agencies being phished relate to economic trade, defense, aviation, and foreign relations. This suggests that the attackers are likely to be an actor or group operating under a mandate to understand China's international goals. 

China-based CERT 360 has previously reported on related indicators being attributed to BITTER APT. This group is known to operate out of a South Asian country and is a suspected Indian APT in open source reporting. BITTER APT campaigns primarily target China, Pakistan and Saudi Arabia historically.

Phishing Defense
Although the attack identified is targeting officials within the government of the People's Republic of China, it is important for all organizations to understand that threat actors use the same methods and techniques to target the public and private sectors. Organizations at risk of being targeted in the manner observed should take several basic precautionary steps. This includes having security controls in place that integrate threat intelligence about active attacks, defense-in-depth protections including firewalls, and regular security training for employees that includes anti-phishing education. 

To learn more about Anomali and how hundreds of enterprises use it to reduce risk, visit us on the exhibitor floor at Black Hat USA 2019, #1114. 

Twitter: https://twitter.com/Anomali
LinkedIn: https://www.linkedin.com/company/anomali/
Blog: https://www.anomali.com/blog

About Anomali
Anomali® detects adversaries and tells you who they are. Organizations rely on Anomali to detect threats, understand adversaries, and respond effectively. Anomali arms security teams with machine learning optimized threat intelligence and identifies hidden threats targeting their environments. The platform enables organizations to collaborate and share threat information among trusted communities and is the most widely adopted platform for ISACs and leading enterprises worldwide. For more information, visit us at www.anomali.com

Contact
Joe Franscella
News Media Relations
+1-209-597-6656
[email protected]


These press releases may also interest you

at 06:13
eWTP Arabia Capital Technology Fund I ("Techology Fund I"), managed by eWTP Arabia Capital ("eWTPA"), one of the leading private equity firms in the Middle East, was listed in the Preqin League Tables as the the fifth top-performing VC funds in the...

18 mai 2024
Celltrion partners with TV star Mollie Pearce to launch the second installation of the Where's Crohn's & Colitis (CC)? campaign for this year's World IBD Day (19 May 2024). The campaign focuses on access to IBD care and treatment as the burden of...

18 mai 2024
The global industrial automation market in life sciences industry  size is estimated to grow by USD 5.06 bn from 2024-2028, according to Technavio. The market is estimated to grow at a CAGR of  11.4%  during the forecast period. ...

18 mai 2024
"Maximizing customer retention and expansion is more important than ever for B2B SaaS companies," said Steven Forth, CEO of Ibbaka. "Our...

18 mai 2024
Gilead Sciences, Inc. , following the recent acquisition of CymaBay Therapeutics, Inc., today announced interim results from the ongoing ASSURE study demonstrating treatment with seladelpar, an investigational PPAR delta agonist, led to improvements...

18 mai 2024
Mirum Pharmaceuticals, Inc. today announced data presented during the 56th European Society for Paediatric, Gastroenterology, Hepatology, and Nutrition (ESPGHAN) Annual Meeting which took place this week in Milan, Italy. Data from LIVMARLI®...



News published on and distributed by: