In 2024, ESET identified a new China-aligned APT group named LongNosedGoblin, which targets governmental entities in Southeast Asia and Japan. The group employs a custom toolset, primarily using C#/.NET applications, to…
A cyber espionage campaign utilizing the GoSerpent backdoor has infiltrated government networks in Southeast Asia for over five years, harvesting sensitive police and biometric data. The operation, revealed by…
ToddyCat, an advanced persistent threat group, has adapted its tactics to exploit OAuth-based authorization flows, allowing them to compromise Gmail accounts without stealing user credentials. The group utilizes a…
The ToddyCat Advanced Persistent Threat (APT) group has been identified as accessing internal communications of employees at various targeted organizations. This breach raises concerns about the potential exposure of…
ToddyCat, a cyber espionage group, has been targeting Microsoft Exchange servers since December 2020. The group initially exploited an unidentified vulnerability but significantly ramped up its operations in February…
The ToddyCat advanced persistent threat group has updated its methods to target Outlook emails and Microsoft 365 access tokens. Kaspersky Labs reported that between late 2024 and early 2025, ToddyCat refined its toolkit…
The ToddyCat Advanced Persistent Threat (APT) group has gained unauthorized access to the internal communications of employees at various targeted organizations. This breach raises significant concerns regarding the…