Cybersecuritynews APT36 Hacker Group Targets Linux Systems with New Disruption Tools
Article Content
Browse articles
APT36, also known as the Transparent Tribe, is actively targeting Linux systems using new tools aimed at disrupting services. This group has a history of espionage against Indian government and defense organizations, employing tactics such as spear-phishing and weaponized documents to infiltrate systems. The ongoing campaign reflects their adaptability and persistent threat to cybersecurity.
Ask AI about this cluster
Answers cite the sources they use
Updated 194d ago How this analysis works
Timeline
2026-02-10
APT36 begins targeting Linux systems with new tools
Date unknown
APT36 employs spear-phishing and weaponized documents
More articles in this cluster (3)
Following this threat?
Track Apt36 in your own feed — you're alerted when they show up in new reporting, leak sites or exploitation.
Free account · no card needed
Continue Reading
APT36 Launches Operation RapidRust with New Rust Malware Tools In August 2026, the Pakistan-nexus threat actor APT36 initiated Operation RapidRust, targeting government and defense organizations in India and Afghanistan. The campaign introduced several new Rust-based malware tools, including the RUSTYSHADE backdoor and RUSTYMOVE propagation tool. APT36 also deployed file-stealing…
Critical WSO2 API Manager Vulnerability Under Active Exploitation A critical vulnerability (CVE-2026-5430) in WSO2 API Manager is being actively exploited, allowing unauthenticated attackers to forge admin tokens via JWT authentication bypass. This flaw, which has a CVSS score of 10.0, affects multiple WSO2 products including API Manager, Universal Gateway, Traffic Manager, and API…