China’s BADAUDIO Blues: APT24 Strikes Again with Sneaky Malware Shenanigans

The China-nexus threat actor APT24 has been busy with BADAUDIO, a new malware campaign. This isn’t just your average cyber mischief; it’s a three-year-long digital escapade. APT24 has swapped its old tricks for sophisticated tactics, targeting organizations in Taiwan while using watering holes and phishing as their go-to moves.

Pro Dashboard

Hot Take:

When it comes to digital espionage, APT24 is clearly the James Bond of the cyber world—minus the tuxedo and martinis, but definitely armed with a license to hack. Their latest escapade, BADAUDIO, is like a blockbuster sequel no one asked for, but everyone’s watching. So buckle up, because this thriller is far from over!

Key Points:

  • APT24, aka Pitty Tiger, is a China-linked hacking group targeting U.S. and Taiwan sectors with the new BADAUDIO malware.
  • BADAUDIO acts as a first-stage downloader, using advanced techniques like watering holes and supply chain attacks for persistence.
  • Since November 2022, the group has compromised over 20 websites for malicious intent, mostly avoiding Apple’s ecosystem.
  • The group is linked to Earth Aughisky, sharing infrastructure and malware like Taidoor and Specas.
  • CyberArmor’s Autumn Dragon campaign reveals further China-nexus threats in Southeast Asia.

Membership Required

 You must be a member to access this content.

View Membership Levels
Already a member? Log in here
The Nimble Nerd
Confessional Booth of Our Digital Sins

Okay, deep breath, let's get this over with. In the grand act of digital self-sabotage, we've littered this site with cookies. Yep, we did that. Why? So your highness can have a 'premium' experience or whatever. These traitorous cookies hide in your browser, eagerly waiting to welcome you back like a guilty dog that's just chewed your favorite shoe. And, if that's not enough, they also tattle on which parts of our sad little corner of the web you obsess over. Feels dirty, doesn't it?