WeSearch

What type of 'C2 on a sleep cycle' do they leave behind? Novel Chinese spy group found in critical networks in Poland, Asia

·5 min read · 0 reactions · 0 comments · 2 views
#cyber espionage#china-linked hackers#shadowpad#critical infrastructure#apt groups
What type of 'C2 on a sleep cycle' do they leave behind? Novel Chinese spy group found in critical networks in Poland, Asia
⚡ TL;DR · AI summary

A newly identified China-linked cyber espionage group, tracked as Shadow-Earth-053, has infiltrated critical networks in Poland, several Asian countries, and potentially other regions since December 2024. The group, which targets government agencies, defense contractors, and technology firms, often gains access through vulnerable Microsoft Exchange Servers and uses the ShadowPad backdoor after prolonged reconnaissance. It shares tactics and infrastructure with a related group, Shadow-Earth-054, raising concerns about dormant command-and-control mechanisms and potential prepositioning for future disruptive attacks.

Key facts
Original article
The Register
Read full at The Register →
Opening excerpt (first ~120 words) tap to expand

Cyber-crime What type of 'C2 on a sleep cycle' do they leave behind? Novel Chinese spy group found in critical networks in Poland, Asia Just in time for the Trump-Xi summit Jessica Lyons Thu 30 Apr 2026 // 11:00 UTC Exclusive A novel China-linked threat group infiltrated more than a dozen critical networks in Poland, Asian countries, and possibly beyond, beginning in December 2024 and with activity uncovered as recently as this month. I'm concerned about what they are leaving behind: What type of C2 on a sleep cycle is still lingering in these environments? In a report shared exclusively with The Register, TrendAI researchers say the new group, which they track as Shadow-Earth-053, targeted government agencies, defense contractors, technology firms, and the transportation industry.

Excerpt limited to ~120 words for fair-use compliance. The full article is at The Register.

Anonymous · no account needed
Share 𝕏 Facebook Reddit LinkedIn Threads WhatsApp Bluesky Mastodon Email

Discussion

0 comments

More from The Register