CyberWire Daily
CyberWire Daily
N2K Networks
Lancefly screams bloody Merdoor.
16 minutes Posted Jun 3, 2023 at 5:00 am.
0:00
16:36
Download MP3
Show notes

Brigid O Gorman from Symantec joins Dave to discuss their research, “Lancefly: Group Uses Custom Backdoor to Target Orgs in Government, Aviation, Other Sectors." Researchers discovered in 2020 that Lancefly, an APT group, is using a custom-written backdoor in attacks targeting government, aviation, educations, and telecoms organizations in South and Southeast Asia.

The research states "The backdoor is used very selectively, appearing on just a handful of networks and a small number of machines over the years, with its use appearing to be highly targeted." These targets, though observed in some activity in 2020 and 2021, started in 2022 and have continued into 2023.

The research can be found here:

Learn more about your ad choices. Visit megaphone.fm/adchoices