Skip to content

Chinese

Gbhackers Mayura Kathir June 26, 2026

A Chinese-speaking threat cluster tracked as CL-STA-1062 has deployed a newly discovered .NET backdoor, TinyRCT, in targeted campaigns against government and critical energy infrastructure across Southeast Asia during 2025. The recent campaign combines common open-source tooling with bespoke malware. Operators consistently leverage publicly available utilities SoftEther VPN for tunneling, VNT and yuze for covert command-and-control, […]

Extracted Entities

Attack Types (1)

Industries (2)

Malware (1)