Skip to main content

Tag: famoussparrow

5 articles

A person stands in front of a government building with network equipment visible in the background.

China's Salt Typhoon Targets Latin America with Sophisticated Backdoor Malware

Meet Salt Typhoon, a notorious PRC-backed espionage group that's set its sights on Latin America, infecting government agencies with sophisticated backdoor malware. In just a few months, they've targeted a whopping 90% of their victims in the region, hitting countries including Argentina, Ecuador, and Venezuela.

Analyst 207
Government building in Latin America with subtle tech integration details.

FamousSparrow Deploys SparroWocky Backdoor in Latin America Push

Meet SparroWocky, a sneaky new backdoor that's been secretly targeting government agencies across Latin America since August 2025, courtesy of the China-aligned threat actor FamousSparrow. This modular malware mastermind can run commands, steal files, and even take screenshots, wreaking havoc on unsuspecting hosts.

Analyst 207
Modern Latin American cityscape with mix of colonial and contemporary architecture, subtle tech hints in outdoor café.

FamousSparrow Targets Latin America with SparroWocky Backdoor

Meet SparroWocky, a sneaky new backdoor that's helping the China-aligned threat actor FamousSparrow wreak havoc in Latin America. This modular C++ backdoor has been taking center stage since August 2025, replacing its predecessor SparrowDoor as the group's go-to tool.

Analyst 207
Government building in Latin American city with people walking in background.

China-linked hackers deploy SparroWocky malware in Latin American govt espionage attacks

China-linked hackers are targeting Latin American governments with a new, sneaky malware called SparroWocky, designed to secretly collect intelligence on the region's responses to growing US pressure. The espionage campaign, tracked by ESET researchers, has hit government organizations in at least eight countries across the region.

Analyst 207
Server room with computer equipment and servers under ordinary indoor lighting.

China-linked hackers exploit Microsoft Exchange in Azerbaijani energy firm attacks.

A group of China-linked hackers, known as FamousSparrow, launched a sustained cyberattack on an Azerbaijani oil and gas company, exploiting Microsoft Exchange vulnerabilities in a multi-wave intrusion that spanned three months. The attackers used the ProxyNotShell exploit to gain and maintain access to the victim's environment.

Analyst 207