March 23, 2023, 10:01 a.m. | MalBot

Malware Analysis, News and Indicators - Latest topics malware.news

By Aleksandar Milenkoski, Juan Andres Guerrero-Saade, and Joey Chen, in collaboration with QGroup


Executive Summary




  • In Q1 of 2023, SentinelLabs observed initial phases of attacks against telecommunication providers in the Middle East.


  • We assess that this activity represents an evolution of tooling associated with Operation Soft Cell.


  • While it is highly likely that the threat actor is a Chinese cyberespionage group in the nexus of Gallium and APT41, the exact grouping remains unclear.


  • SentinelLabs observed the use of a well-maintained, …

actor apt41 apts attacks chen chinese collaboration cyberespionage executive gallium love malware analysis middle east nexus operation soft cell qgroup sentinellabs target telecommunication telecommunication providers threat threat actor tooling

Social Engineer For Reverse Engineering Exploit Study

@ Independent study | Remote

DevSecOps Engineer

@ LinQuest | Beavercreek, Ohio, United States

Senior Developer, Vulnerability Collections (Contractor)

@ SecurityScorecard | Remote (Turkey or Latin America)

Cyber Security Intern 03416 NWSOL

@ North Wind Group | RICHLAND, WA

Senior Cybersecurity Process Engineer

@ Peraton | Fort Meade, MD, United States

Sr. Manager, Cybersecurity and Info Security

@ AESC | Smyrna, TN 37167, Smyrna, TN, US | Santa Clara, CA 95054, Santa Clara, CA, US | Florence, SC 29501, Florence, SC, US | Bowling Green, KY 42101, Bowling Green, KY, US