Scworld UnsolicitedBooker Targets Telecoms in Central Asia with New Backdoors
Article Content
Browse articles
The China-aligned APT group UnsolicitedBooker has intensified cyber-espionage operations against telecommunications companies in Kyrgyzstan and Tajikistan. The group has deployed two sophisticated backdoors, LuciDoor and MarsSnake, utilizing tailored spear-phishing campaigns to compromise these organizations. This marks a shift from their previous focus on Saudi Arabian targets.
Ask AI about this cluster
Answers cite the sources they use
Updated 203d ago How this analysis works
Timeline
2023-03-01
UnsolicitedBooker identified as active threat actor
Recent
UnsolicitedBooker targets telecoms in Kyrgyzstan and Tajikistan
Recent
Deployment of LuciDoor and MarsSnake backdoors reported
More articles in this cluster (2)
Following this threat?
Track Mustang Panda and LuciDoor in your own feed — you're alerted when they show up in new reporting, leak sites or exploitation.
Free account · no card needed
Continue Reading
Mustang Panda Escalates Cyberattacks on European Maritime Sector Chinese hacking group Mustang Panda has intensified cyberespionage campaigns targeting maritime organizations across at least seven EU member states throughout 2025. The European Union Agency for Cybersecurity (ENISA) reported that these attacks primarily focus on espionage and strategic intelligence collection, with…
BambooToken Malware Exploits MQTT for Control of Infected Systems The BambooToken malware, discovered by Lumen's Black Lotus Labs, has been active since at least February 2023, targeting Windows and Linux systems across Asia and South America. It uses the MQTT protocol for command-and-control communications, allowing stealthy operations and evasion of detection. The malware was…