Attention: You are using an outdated browser, device or you do not have the latest version of JavaScript downloaded and so this website may not work as expected. Please download the latest software or switch device to avoid further issues.

News > Attacks & Threats > SilkParasite Threatens Central Asian Orgs With Flurry of RATs

SilkParasite Threatens Central Asian Orgs With Flurry of RATs

A spear-phishing campaign by a China-nexus group linked to FamousSparrow provides insight into geopolitical, technical, and strategic global moves by the country's APTs.

A China-nexus cyber-espionage operation is actively targeting government organizations across Central Asia with a collection of mostly previously unidentified remote access Trojans (RATs) from seven different malware families to establish and maintain long-term access to selected victims.

Researchers from Bitdefender Labs began tracking the activity — which they attribute to an advanced persistent threat (APT) group called SilkParasite — in late 2025 after they detected an infection at a Central Asian government body involved in economic decision-making, according to a report published today. The campaign targets government entities across Uzbekistan, Turkmenistan, Kyrgyzstan, Tajikistan, and Kazakhstan, using spear-phishing lures tailored to specific ministries and government organizations. More here

Similar Stories

Threat actors behind the "Phantom Deal" campaign are studying companies in extreme detail, aiming to dupe midlevel employees into initiating large financial transfers. More...

The "Spring Ring" operation aims to compromise users of the collaboration suite to remotely access their sessions, sprea… More...

Microsoft has disclosed details of a new ClickFix variant, dubbed TerminalFix, that aims to trick users into running a m… More...

OpenAI's Hugging Face attack postmortem shows agents don't care about rules — they need strong controls. More...

An untold number of ZBT routers sold around the world as white-label products come with several implants built by the ma… More...

Have your say

 

News Categories

Threat actors behind the "Phantom Deal" campaign are studying companies in extreme detail, aiming to dupe midlevel employees into initiating large financial transfers. More...

The "Spring Ring" operation aims to compromise users of the collaboration suite to remotely access their sessions, sprea… More...

Microsoft has disclosed details of a new ClickFix variant, dubbed TerminalFix, that aims to trick users into running a m… More...

OpenAI's Hugging Face attack postmortem shows agents don't care about rules — they need strong controls. More...

An untold number of ZBT routers sold around the world as white-label products come with several implants built by the ma… More...

image

Contact Us

Security Interest Group Switzerland
c/o Bridge Head AG
Sulzbergstrasse 34
5430 Wettingen
Switzerland

Follow Us

This website is powered by
ToucanTech