67
Technology3h 5m ago

ESET researchers uncovered two previously undocumented Windows variants of SprySOCKS, a backdoor linked to the China-aligned cyberespionage group FishMonger.

Archive Window: 7 Days Left

Honduras, Taiwan, Thailand, Pakistan

Who
ESET researchers, FishMonger cyberespionage group
What
ESET researchers uncovered two previously undocumented Windows variants of SprySOCKS, a backdoor linked to the China-aligned cyberespionage group FishMonger.
When
Tue, 16 Jun 2026 09:04:51 GMT · 3h 5m ago
Where
Honduras, Taiwan, Thailand, Pakistan ·
Why
The newly discovered malware variants significantly expand the group's capabilities by introducing Windows-native persistence mechanisms and, in one version, a kernel-level rootkit designed to conceal malicious activity from security tools.
The Frontline Impact

How this affects you

This discovery reveals an expansion of the FishMonger group's cyberespionage capabilities, now targeting Windows systems with sophisticated rootkit technology to evade detection. The attacks primarily targeting government organizations in multiple Asian and Central American countries indicates a notable geopolitical threat to national security and data integrity.

Story chain

4 events in this thread

Verified Sources & Citations