Chinese state-sponsored threat actors allegedly spent four years lurking in the IT infrastructure of a major Asian telecommunications provider.
The cyber-espionage campaign was discovered by security researchers Sygnia while investigating a separate incident.
The threat actors, referred to as Weaver Ant, used China Chopper web shells and other malicious payloads to move laterally and exfiltrate sensitive data.
Weaver Ant adapted their tactics over time, persisting in the compromised network, highlighting the danger and persistence of nation-state threat actors.