The Hacker News reported on December 1 that Chinese hackers have conducted attacks on governmental servers in Uzbekistan and against individual users in South Korea.
The Uzbek Foreign Ministry’s servers reportedly came under an attack utilizing a “remote access Trojan” program called “SugarGh0st RAT,” which enables hackers to transfer data, initiate commands remotely and other malicious activities.
The Hacker News report goes on to claim that the program originated in China, adding that the hackers appeared to be native Chinese speakers. The report however does not provide any proof of Chinese government involvement, but doesn’t rule it out, given that China has a record of carrying out such intelligence-gathering activity. For example, earlier this autumn, Chinese state-connected hackers reportedly broke into US State Department servers, gaining access to over 60,000 emails.
"The Gh0st RAT malware is a mainstay in the Chinese threat actors' arsenal and has been active since at least 2008. … The targeting of the Uzbekistan Ministry of Foreign Affairs also aligns with the scope of Chinese intelligence activity abroad," Hacker News quotes researchers as saying.
The researchers said they discovered four samples deployed as part of the campaign, including one sent to users in Uzbekistan’s Ministry of Foreign Affairs. Once opened, the sample reportedly drops a decoy document purporting to be about an investment project with content about a presidential decree about technical regulation.




The tragedy in Mina: the crime that could end Donald Trump and his Defense Secretary's careers
The bilateral trade between Uzbekistan and Tajikistan could grow another 40%, expert says
Representative of Tajikistan discusses the Role of Eurasian Transport Routes at Global Forum in Baku
Financial literacy key to survival for rural Tajik families
U.S. State Department offers $10 million reward for Information on Iran’s new Supreme Leader
The ASAN model - one of the central pillars of Azerbaijan’s national anticorruption strategy
This week in Tajikistan saw a series of notable developments
Celebrations for Navrouz in Dushanbe: a grand festival at Navrouzgoh complex
Russia's power sector in Central Asia faces growing challenges amid financial strain
Military court in St. Petersburg jails Tajik citizen for justifying terrorist attack at Crocus City Hall
All news
Авторизуйтесь, пожалуйста