Darkreading
SilkParasite Targets Central Asian Governments with New RATs
Ask AI about this cluster
Analyzing cluster data...
Referenced clusters:
Something went wrong. Please try again.
Cluster AI
Ask questions about this threat cluster with AI-powered analysis.
Get Researcher $29.99/moArticle Content
A Chinese-nexus APT group named SilkParasite is conducting a spear-phishing campaign targeting government organizations in Central Asia, specifically in Uzbekistan, Turkmenistan, Kyrgyzstan, Tajikistan, and Kazakhstan. The campaign utilizes seven different remote access Trojans (RATs), five of which are newly identified by Bitdefender. Attackers employ regionally tailored Office documents, often in password-protected RAR archives, to deliver malware. The campaign is linked to the broader FamousSparrow group and indicates China's strategic moves into an area previously influenced by Russia. The malware is noted for its modular design and potential AI-assisted development. The operation has been active since late 2025, with significant implications for regional cybersecurity and geopolitics.
Key Points: • SilkParasite is targeting Central Asian government organizations with a sophisticated phishing campaign. • The campaign deploys seven RATs, five of which are newly identified by Bitdefender. • The operation reflects China's strategic interests in Central Asia amid diminishing Russian influence.