Earth Minotaur
0 incidentes
0 paises
0 sectores
apt CN Ultimo: -
Earth Minotaur is a recently documented cyber espionage threat actor, first publicly identified in December 2024, assessed with moderate confidence to be aligned with Chinese state interests. The group's primary motivation is long-term surveillance, specifically targeting Tibetan and Uyghur communities across various geographic locations. This group distinguishes itself through its cross-platform attack capabilities, leveraging an upgraded MOONSHINE exploit kit and deploying the previously unreported DarkNimbus backdoor on both Android and Windows devices. While the MOONSHINE exploit kit has been used by other threat actors like POISON CARP, Earth Minotaur is considered a distinct intrusion set, with no direct connection found to POISON CARP or Earth Empusa.