⤷ Title: Symantec Exposes Chinese APT Overlap: Zingdoor, ShadowPad, and KrustyLoader Used in Global Espionage
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Thu, 23 Oct 2025 01:43:11 +0000
════════════════════════
⌗ Tags: #Cyber Security #Malware #Chinese APT #DLL Sideloading #Espionage #KrustyLoader #ShadowPad #Supply Chain #Zingdoor
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Thu, 23 Oct 2025 01:43:11 +0000
════════════════════════
⌗ Tags: #Cyber Security #Malware #Chinese APT #DLL Sideloading #Espionage #KrustyLoader #ShadowPad #Supply Chain #Zingdoor
Daily CyberSecurity
Symantec Exposes Chinese APT Overlap: Zingdoor, ShadowPad, and KrustyLoader Used in Global Espionage
Symantec exposed a complex Chinese APT network (Glowworm/UNC5221) deploying Zingdoor and ShadowPad across US/South American targets. The groups abuse DLL sideloading and PetitPotam for credential theft.