Uptime Hamster: 11d 13h 17mDeploy: 14 Jul 2026 21:26Updated: 2026-07-21
Logo del actor de amenaza UAT-8099

UAT-8099

0 incidentes 0 paises 0 sectores apt CN Ultimo: -
Ver en IntelTracker → APTTrail →
UAT-8099 is a Chinese-speaking cybercrime group that emerged in April 2025, primarily motivated by financial gain through search engine optimization (SEO) fraud and the theft of high-value credentials, configuration files, and certificate data. The group distinguishes itself by actively targeting reputable Internet Information Services (IIS) servers to manipulate search rankings, leveraging the trusted nature of these servers for their illicit activities. They have demonstrated an evolution in their tactics, shifting towards regionally targeted campaigns with customized BadIIS malware variants and incorporating advanced persistence techniques, including a Linux version of their primary malware.

Actores similares

apt-equationgroupactor · 1uat-5918actor · 1Equationactor · 1Aquatic Pandaactor · 1aquatic-pandaactor · 1equation-groupactor · 1UAT-5394apt · 0Equation Groupapt · 0UAT-9244apt · 0UAT-6382apt · 0
Tipo
apt
Pais origen
CN
Motivacion
-
Impacto
22
Actualizado
Wed, 04 Fe