Scworld
China-linked UAT-7290 Targets Telcos in Cyberespionage Campaign
First seen 9 Jan 2026, 20:34 UTC
•
•95.9
Export
Article Content
Browse articles
Telecommunications providers in South Asia and Southeastern Europe have been targeted by the China-linked threat operation UAT-7290 in a series of cyberespionage attacks. The intrusions involved extensive reconnaissance and the deployment of a Linux-based malware suite, including the RushDrop dropper, ChronosRAT, and DriveSwitch malware, which facilitates the delivery of additional malicious payloads.
Analyzing cluster data...
Referenced clusters:
Something went wrong. Please try again.
More articles in this cluster
Continue Reading
Google Addresses Eighth Chrome Zero-Day Vulnerability in 2025
China-linked Cyber Group Expands Targeting to Southeastern Europe
China-Nexus APT UAT-7290 Targets South Asia Telecoms in Cyber Espionage Campaign
UAT-7290 Cyber Espionage Targets South Asian Telecoms
New WebKit Zero-Day CVE-2025-14174 Discovered and Exploited
Google Issues Urgent Update for Chrome 0-Day Vulnerability