unc6384-deploys-plugx-via-captive-portal-hijacks-and-valid-certificates-targeting-diplomats

A China-linked threat group identified as UNC6384 has been connected to a series of assaults aimed at diplomats in Southeast Asia as well as various organizations worldwide to promote Beijing’s strategic goals.
“This multi-phased attack sequence employs sophisticated social manipulation techniques, including legitimate code signing certificates, a man-in-the-middle (MitM) assault, and indirect execution methods to avoid detection.”


Leave a Reply

Your email address will not be published. Required fields are marked *

Share This