Russia-linked APT TAG-110 uses targets Europe and Asia
Security Affairs
NOVEMBER 25, 2024
The campaign primarily targeted government entities, human rights groups, and educational institutions in Central Asia, East Asia, and Europe. The loader communicates with C2 servers via HTTP PUT, sharing system details. HATVIBE uses obfuscation (e.g., XOR encryption) and persists via scheduled tasks with mshta.exe.
Let's personalize your content