Sept. 22, 2023, 1:02 p.m. | Lior Rochberger, Tom Fakterman and Robert Falcone

Unit42 unit42.paloaltonetworks.com

We analyze waves of attacks on a Southeast Asian government linked to Alloy Taurus. By exploiting exchange servers, the attackers established a foothold for long-term espionage.


The post Persistent Attempts at Cyberespionage Against Southeast Asian Government Target Have Links to Alloy Taurus appeared first on Unit 42.

advanced url filtering alloy alloy taurus apt attackers attacks behavioral threat protection cl-sta-0045 cobalt strike cortex xdr cortex xdr pro cortex xsiam cyberespionage dns security espionage exchange exploiting gallium government lazagne links lolbas mimikatz persistent servers target threat actors web shells wildfire

More from unit42.paloaltonetworks.com / Unit42

SOC 2 Manager, Audit and Certification

@ Deloitte | US and CA Multiple Locations

Open-Source Intelligence (OSINT) Policy Analyst (TS/SCI)

@ WWC Global | Reston, Virginia, United States

Security Architect (DevSecOps)

@ EUROPEAN DYNAMICS | Brussels, Brussels, Belgium

Infrastructure Security Architect

@ Ørsted | Kuala Lumpur, MY

Contract Penetration Tester

@ Evolve Security | United States - Remote

Senior Penetration Tester

@ DigitalOcean | Canada