Security News > 2020 > May > Chinese Naikon APT Rediscovered After New Five-year Stealth Campaign

Chinese Naikon APT Rediscovered After New Five-year Stealth Campaign
2020-05-07 14:00

Naikon, a Chinese APT group that disappeared after its activities were disclosed in 2015, has been rediscovered and may have remained active but unrecognized since the 2015 reports.

Researchers have uncovered evidence of a five-year stealth campaign against similar targets in the same geographical area that they believe to be conducted by Naikon.

Naikon appears to be a little known but persistent Chinese APT group.

"While the Naikon APT group has kept under the radar for the past 5 years," concludes Check Point Research, "It appears that they have not been idle. In fact, quite the opposite. By utilizing new server infrastructure, ever-changing loader variants, in-memory fileless loading, as well as a new backdoor - the Naikon APT group was able to prevent analysts from tracing their activity back to them."

Having been found again, it will be interesting to see whether Naikon again disappears, to reemerge at some point in the future with a new attack methodology using new tools against the same APAC governments.


News URL

http://feedproxy.google.com/~r/Securityweek/~3/guCiqvHpjJE/chinese-naikon-apt-rediscovered-after-new-five-year-stealth-campaign