Listen "Operation Crimson Palace"
Episode Synopsis
On this episode, Mark Parsons, Senior Threat Hunter at Sophos MDR, discusses his team's investigation into Operation Crimson Palace, which uncovered Chinese state-sponsored cyberespionage targeting a Southeast Asian government. Mark explains how they identified three distinct clusters of activity using advanced malware and evasion techniques, including previously unreported tools like CCoreDoor and PocoProxy. Show NotesOperation Crimson Palace: Sophos threat hunting unveils multiple clusters of Chinese state-sponsored activity targeting Southeast Asian governmentSurfacing a Hydra: Unveiling a Multi-Headed Chinese State-Sponsored Campaign Against a Foreign GovernmentCrimson Palace returns: New Tools, Tactics, and Targets
More episodes of the podcast Malspace
Doppelgänger
10/11/2024
The Darkside of TheMoon
07/10/2024
From GReAT to greater Good
04/08/2024
PIVOTcon
07/07/2024
North Korean APTs and Russian Rockets
19/06/2024
ZARZA We are Zarza, the prestigious firm behind major projects in information technology.