Close Menu
Tech Nova Mindset – Empower Innovation and Forward Thinking

    Subscribe to Updates

    Get the latest creative news from FooBar about art, design and business.

    What's Hot

    Sports Journalists Asked Microsoft’s Copilot to Predict World Cup Matches, and the Results May Surprise You

    June 18, 2026

    Stanford’s DeLM cuts multi-agent task costs 50% — without a central orchestrator

    June 18, 2026

    Accenture to Acquire Majority Stake in Dragos, All of runZero, NetRise in $4.1 Billion OT Cybersecurity Push

    June 18, 2026
    Facebook X (Twitter) Instagram
    Trending
    • Sports Journalists Asked Microsoft’s Copilot to Predict World Cup Matches, and the Results May Surprise You
    • Stanford’s DeLM cuts multi-agent task costs 50% — without a central orchestrator
    • Accenture to Acquire Majority Stake in Dragos, All of runZero, NetRise in $4.1 Billion OT Cybersecurity Push
    • Clarkson’s Farm season 6: release window and everything we know so far about the return of Jeremy Clarkson’s hit Prime Video show
    • Waymo Recalls Robotaxis Over Risk They’ll Drive at Speed Into Freeway Construction Zones
    • Ultrahuman M2 Live is a cheaper CGM program that doesn’t require a prescription
    • Old iPods Are Making A Comeback Thanks To Gen Z
    • Lawsuits, insider trading claims – prediction market news live
    Tech Nova Mindset – Empower Innovation and Forward Thinking
    • Home
    • Gadgets
    • Reviews
    • Tech News
    • Future Tech
    • AI & Robotics
    • How-To Guides
    • More
      • Cybersecurity
      • Startups & Innovation
    Tech Nova Mindset – Empower Innovation and Forward Thinking
    Home»Cybersecurity»Chinese Cybercrime Group in Spotlight for Record Campaign Pace
    Cybersecurity

    Chinese Cybercrime Group in Spotlight for Record Campaign Pace

    kirklandc008@gmail.comBy kirklandc008@gmail.comJune 4, 2026No Comments3 Mins Read
    Facebook Twitter Pinterest LinkedIn Tumblr Email
    China APT
    Share
    Facebook Twitter LinkedIn Pinterest Email

    A Chinese-speaking cybercrime group tracked as TA4922 has been escalating activities and expanding to new geographies, Proofpoint reports.

    Relying on social engineering, the hacking group has been continually updating its arsenal, distributing multiple malware families and also engaging in credential phishing and fraud schemes such as credit card theft.

    While some of TA4922’s activities overlap with those of the threat actors tracked as Silver Fox and Void Arachne, the group does not appear to engage in espionage, unlike those clusters.

    “The campaigns attributed to TA4922 align more closely with cybercriminal objectives despite the actor’s advanced tradecraft,” Proofpoint says.

    The cybersecurity firm has been tracking TA4922 malicious email campaigns for over a year and believes that its focus is to obtain remote access to victim organizations for data theft, access resale, fraud, and other financially motivated activities.

    Using HR, payroll tax, and invoicing themes, the hacking group attempts to lure victims into clicking on malicious links to download malicious payloads or unwittingly share their credentials.

    Advertisement. Scroll to continue reading.

    Historically, the cybercrime gang has sent hundreds to a few thousand messages per campaign, tailored to specific regions or business functions, targeting organizations in Japan, Taiwan, Korea, Singapore, and India.

    Recently, the group also started targeting European organizations in the UK, Germany, and Italy, as well as entities in South Africa.

    TA4922 was also seen launching credential-phishing and imposter campaigns, looking to shift communication from email to out-of-band channels, including messaging platforms such as LINE, WhatsApp, or Microsoft Teams.

    “Once communication moves to those platforms, the actor is better positioned to extend social engineering, harvest contact information, or deliver malware beyond traditional email security visibility,” Proofpoint says.

    In March, the threat actor used HR lures in campaigns targeting organizations in Japan with the Atlas RAT backdoor and the RomulusLoader malware loader.

    In April, the group used HR lures and previous infrastructure in Atlas RAT attacks against organizations in the UK and Germany, but switched to customer service communications lures in another campaign.

    Multiple April campaigns attributed to TA4922 relied on RomulusLoader to install legitimate Remote Monitoring and Management (RMM) tools, including AnyDesk and SyncFuture.

    At the end of March, the group targeted UK organizations with the SilentRunLoader Python‑based loader and stealer to exfiltrate credentials, cookies, and browsing information from Google Chrome. In April, SilentRunLoader was used in attacks against entities in Southeast Asia and the UK.

    According to Proofpoint, the cybercrime gang has also been observed using the ValleyRAT (Winos4.0) backdoor and other malware families in attacks.

    “TA4922 currently conducts more unique campaigns than any other tracked cybercrime threat actor in Proofpoint threat data, demonstrating high operational tempo, a variety of lures, and multiple objectives. While the actor is assessed to be financially motivated, the capabilities of the malware include the potential for surveillance which could be used by or sold to espionage groups,” Proofpoint notes.

    Related: Chinese APTs Expand Targets, Update Backdoors in Recent Campaigns

    Related: Palo Alto Zero-Day Exploited in Campaign Bearing Hallmarks of Chinese State Hacking

    Related: Alleged Chinese State Hacker Extradited to US

    Related: Chinese Hackers Caught Deep Within Telecom Backbone Infrastructure

    Campaign Chinese cybercrime Group pace record spotlight
    Share. Facebook Twitter Pinterest LinkedIn Tumblr Email
    kirklandc008@gmail.com
    • Website

    Related Posts

    Accenture to Acquire Majority Stake in Dragos, All of runZero, NetRise in $4.1 Billion OT Cybersecurity Push

    June 18, 2026

    GentleKiller targets more than 400 security processes across 48 products

    June 18, 2026

    I’m excited about ChatGPT’s memory upgrade – but I’m quickly seeing a downside

    June 18, 2026
    Leave A Reply Cancel Reply

    Top Posts

    Google DeepMind Plans to Track AGI Progress With These 10 Traits of General Intelligence

    March 21, 20263 Views

    The AirPods 4 and Lego’s brick-ified Grogu are our favorite deals this week

    October 12, 20253 Views

    Nothing CEO says phone prices are going to keep going up

    June 12, 20262 Views
    Stay In Touch
    • Facebook
    • YouTube
    • TikTok
    • WhatsApp
    • Twitter
    • Instagram
    Latest Reviews

    Subscribe to Updates

    Get the latest tech news from FooBar about tech, design and biz.

    Recent Posts
    • Sports Journalists Asked Microsoft’s Copilot to Predict World Cup Matches, and the Results May Surprise You
    • Stanford’s DeLM cuts multi-agent task costs 50% — without a central orchestrator
    • Accenture to Acquire Majority Stake in Dragos, All of runZero, NetRise in $4.1 Billion OT Cybersecurity Push
    • Clarkson’s Farm season 6: release window and everything we know so far about the return of Jeremy Clarkson’s hit Prime Video show
    • Waymo Recalls Robotaxis Over Risk They’ll Drive at Speed Into Freeway Construction Zones

    Sports Journalists Asked Microsoft’s Copilot to Predict World Cup Matches, and the Results May Surprise You

    June 18, 2026

    Stanford’s DeLM cuts multi-agent task costs 50% — without a central orchestrator

    June 18, 2026

    Accenture to Acquire Majority Stake in Dragos, All of runZero, NetRise in $4.1 Billion OT Cybersecurity Push

    June 18, 2026

    Clarkson’s Farm season 6: release window and everything we know so far about the return of Jeremy Clarkson’s hit Prime Video show

    June 18, 2026
    Facebook X (Twitter) Instagram Pinterest
    • About Us
    • Contact Us
    • Privacy Policy
    • Terms and Conditions
    • Disclaimer
    © 2026 TechNovaMindset. Designed by By Pro.

    Type above and press Enter to search. Press Esc to cancel.