Oct. 12, 2022, 5 p.m. |

Malwarebytes Labs blog.malwarebytes.com

Categories: Threat Intelligence

Tags: Winnti


Tags: APT


Tags: China


Tags: Sri Lanka


Tags: India


Tags: Keyplug


Tags: malware


Tags: dropbox


Tags: C2


Tags: DBoxAgent


In this research paper, we document a new campaign we attribute to the Winnti APT group. The victims are located in Sri Lanka at a point in time where the country is going through economic hardship while China makes headlines for docking on of its special vessels there.



(Read more...)



The post Winnti APT …

apt c2 campaign china dropbox india keyplug malware sri lanka threat intelligence winnti

SOC 2 Manager, Audit and Certification

@ Deloitte | US and CA Multiple Locations

Digital Trust Cyber Transformation Senior

@ KPMG India | Mumbai, Maharashtra, India

Security Consultant, Assessment Services - SOC 2 | Remote US

@ Coalfire | United States

Sr. Systems Security Engineer

@ Effectual | Washington, DC

Cyber Network Engineer

@ SonicWall | Woodbridge, Virginia, United States

Security Architect

@ Nokia | Belgium