dropper mechanism (1)

11020261271?profile=RESIZE_400xOur friends at Sentinel Labs have provided a great report on Operation Soft Cell.

Summary

  • In Q1 of 2023, Sentinel Labs observed the initial phases of attacks against telecommunication providers in the Middle East.
  • We assess that this activity represents an evolution of tooling associated with Operation Soft Cell.
  • While it is highly likely that the threat actor is a Chinese cyberespionage group in the nexus of Gallium and APT41, the exact grouping remains unclear.
  • Sentinel Labs observed a well-m