DarkPink

MISP
Tipo:
Unknown
Paese:
Unknown
Prima attivita:
Unknown
Dettagli:

DarkPink is an APT group that has been active since mid-2021, primarily targeting government, military, and non-profit organizations in Southeast Asia and Europe. The group employs spear phishing techniques, utilizing ISO images and malicious PDF files to deliver custom Trojan programs like TelePowerBot and KamiKakaBot for information theft. They have exploited vulnerabilities such as CVE-2023-38831 to enhance their attack processes and maintain persistence through DLL side-loading and scheduled tasks. DarkPink's operations are characterized by stealth and precision, making them a significant threat in the cyber landscape.

Alias (65)
Saaiwc Saaiwc Saaiwc Saaiwc Saaiwc Saaiwc Saaiwc Saaiwc Saaiwc Saaiwc Saaiwc Saaiwc Saaiwc Saaiwc Saaiwc Saaiwc Saaiwc Saaiwc Saaiwc Saaiwc Saaiwc Saaiwc Saaiwc Saaiwc Saaiwc Saaiwc Saaiwc Saaiwc Saaiwc Saaiwc Saaiwc Saaiwc Saaiwc Saaiwc Saaiwc Saaiwc Saaiwc Saaiwc Saaiwc Saaiwc Saaiwc Saaiwc Saaiwc Saaiwc Saaiwc Saaiwc Saaiwc Saaiwc Saaiwc Saaiwc Saaiwc Saaiwc Saaiwc Saaiwc Saaiwc Saaiwc Saaiwc Saaiwc Saaiwc Saaiwc Saaiwc Saaiwc Saaiwc Saaiwc Saaiwc
Metadata
ID: 984
Created: 02/02/2026 16:00
Updated: 07/03/2026 04:00