UAT-7810
Reports
5
First seen
Jul 7, 2026
Last seen
Jul 13, 2026
Motivation
Espionage
Relationships
Filled ◆ = CVE exploited in the wild. Entities that appear together in Signalis reporting — co-mention, not confirmed collaboration. Reports naming many actors at once (weekly roundups) are excluded from relationship edges.
Targeting
Sectors
Victim regions
Taiwan ×1
Top ATT&CK techniques
T1190 Exploit Public-Facing Application ×5T1219 Remote Access Software ×4T1071 Application Layer Protocol ×4T1090 Proxy ×4T1505 Web Shell ×2T1041 Exfiltration Over C2 Channel ×2T1087 Account Discovery ×1T1195 Supply Chain Compromise ×1T1110 Brute Force ×1T1543 Create or Modify System Process ×1T1059 Command and Scripting Interpreter ×1T1566 Phishing ×1
Indicators
hash_sha256 ×81cve ×12url ×9ip_v4 ×4hash_md5 ×4filename ×3
Indicator values are available on Pro and via the API.
Associated CVEs
Recent reports
High