National Cyber Warfare Foundation (NCWF)

Abandoned Sogou Zhuyin Update Server Hijacked, Weaponized in Taiwan Espionage Campaign


0 user ratings
2025-08-29 13:51:08
milo
Blue Team (CND)
An abandoned update server associated with input method editor (IME) software Sogou Zhuyin was leveraged by threat actors as part of an espionage campaign to deliver several malware families, including C6DOOR and GTELAM, in attacks primarily targeting users across Eastern Asia.
"Attackers employed sophisticated infection chains, such as hijacked software updates and fake cloud storage or login



Source: TheHackerNews
Source Link: https://thehackernews.com/2025/08/abandoned-sogou-zhuyin-update-server.html


Comments
new comment
Nobody has commented yet. Will you be the first?
 
Forum
Blue Team (CND)



Copyright 2012 through 2025 - National Cyber Warfare Foundation - All rights reserved worldwide.