
Silver Dragon, a sophisticated threat cluster linked to APT41, is currently targeting government entities across Southeast Asia and Europe. Active since mid-2024, the group utilizes a mix of public-facing server exploitation and phishing to deploy its specialized toolkit.
Key Tactics and Tools
Specialized Toolkit
Researchers at Check Point Research identified several custom post-exploitation tools:
APT41 Connection
Silver Dragon is part of the broader APT41 (Winnti) umbrella, which is known for its dual focus on state-sponsored espionage and financial gain. This campaign follows a documented trend of APT41-linked actors abusing legitimate platforms like Google Calendar and Google Sheets for stealthy C2 operations.
#apt41’s #dragon: #drive #google #hide #how #newest #news #plain #sight #silver #subgroup #uses — News
© Bulletproof Servers. All rights reserved.