UnsolicitedBooker Strikes Again: China’s Sneaky Cyber Tactics Unveiled!

UnsolicitedBooker, a China-aligned threat actor, uses flight ticket decoys in spear-phishing emails to infiltrate targets like governmental organizations. ESET discovered their antics in Saudi Arabia, deploying MarsSnake backdoor, proving that cybercriminals have taken “booked solid” to a whole new level.

Pro Dashboard

Hot Take:

In the glamorous world of cyber espionage, it seems that even hackers are booking fictional flights to exotic locales. But unlike us mere mortals, they’re not out to earn frequent flyer miles; they’re packing malware in their virtual luggage and targeting international organizations instead. Move over, James Bond, here comes UnsolicitedBooker with their lethal MarsSnake backdoor, making sure nobody misses their flight to data theft! Who needs travel agents when you can have phishing emails as your passport to espionage?

Key Points:

  • UnsolicitedBooker uses spear-phishing emails with flight tickets as decoys.
  • The MarsSnake backdoor is the new tool in their hacking arsenal.
  • Targets include international organizations in Asia, Africa, and the Middle East.
  • ESET discovered this activity spanning from 2023 to 2025.
  • Other threat actors like DigitalRecyclers and PerplexedGoblin are also making the rounds.

Membership Required

 You must be a member to access this content.

View Membership Levels
Already a member? Log in here
The Nimble Nerd
Confessional Booth of Our Digital Sins

Okay, deep breath, let's get this over with. In the grand act of digital self-sabotage, we've littered this site with cookies. Yep, we did that. Why? So your highness can have a 'premium' experience or whatever. These traitorous cookies hide in your browser, eagerly waiting to welcome you back like a guilty dog that's just chewed your favorite shoe. And, if that's not enough, they also tattle on which parts of our sad little corner of the web you obsess over. Feels dirty, doesn't it?