Middle East Daily
    Hot News
    Lifestyle

    VC Wear Expands Its Luxury Sportswear Line to New Sports with Innovative Product Range

    Business

    Du and Huawei renew partnership to accelerate Emiratisation and digital talent development in UAE

    News

    Century Financial unveils 30 deeds x 30 days initiative during Ramadan

    Important Pages:
    • Privacy Policy
    • Terms & Conditions
    Facebook Twitter Instagram Pinterest
    • Privacy Policy
    • Terms & Conditions
    Friday, February 27
    Facebook Twitter
    Middle East Daily
    • Home
    • News

      Kuwait shimmers in national colors; MoI at the ready

      Faraday Future Announces New FX Super One Deliveries in the Middle East as It Continues to Advance Towards the Region’s 2026 Delivery Goals

      Faraday Future Announces the FX Super One Roadmap for Mass Production, Sales, Delivery, Service and Ramp-Up and Its Entry into Embodied AI Robotics

      Faraday Future Exhibits at WETEX 2025 and Announces FX SuperOne Final Launch on October 28 in Dubai

      Al Jalila Foundation supports 60 organ transplant patients through “Your Donation Saves Lives” campaign

    • Business

      Oris Presents a Curated Selection of Watches for Ramadan and Eid Gifting

      IATA Opens Nominations for 2026 Edition of Diversity & Inclusion Awards

      Saudi Arabia strengthens leadership in life sciences through regulatory reform and digital innovation

      KIB | The Stadium concludes an exceptional fourth season, setting new benchmarks for sports and community engagement

      Etihad rail reveals passenger experience ahead of uae network launch

    • Technology

      UGC-Driven Music Market in MENA Becomes Increasingly Diverse as TikTok Remains the Primary Launchpad for Viral Tracks, 0to8 Reports

      CedarBridge begins deploying third private equity fund across the GCC

      SBC Summit Malta Brings SEO Experts to Tackle Search in 2026

      SBC Summit Malta 2026 Rolls Out Dual-Structure Agenda Merging Strategy and Practice

      GE Vernova announces start of operations at Jafurah Cogeneration ISPP in Saudi Arabia at ADIPEC 2025

    • Lifestyle

      Eqvilent Employee-Athlete Wins International Dressage Championship for UAE

      Emirates’ latest services and enhancements for customers with accessibility requirements

      Dubai’s rise as the global capital of branded residences: Documented by Provident

      Joel Corry and Imanbek to headline star-studded SBC Summit Opening Party

      Ultra comfort, from sleep to workout: Samsung Galaxy Watch8 Series now available for UAE pre-orders

    • Submit A Press Release
    Breaking News:
    • Oris Presents a Curated Selection of Watches for Ramadan and Eid Gifting
    • IATA Opens Nominations for 2026 Edition of Diversity & Inclusion Awards
    • Kuwait shimmers in national colors; MoI at the ready
    • Saudi Arabia strengthens leadership in life sciences through regulatory reform and digital innovation
    • KIB | The Stadium concludes an exceptional fourth season, setting new benchmarks for sports and community engagement
    • Etihad rail reveals passenger experience ahead of uae network launch
    • Waldorf Astoria Kuwait Reinforces Its Global Standing by Retaining the Forbes Five Star Rating for the Third Consecutive Year
    • Casio to Release Full-Metal G-SHOCK with MIP LCD for Enhanced Readability
    Middle East Daily
    Home » ESET releases latest APT report: China-aligned groups expand targeting; Iran advances diplomatic espionage
    Business

    ESET releases latest APT report: China-aligned groups expand targeting; Iran advances diplomatic espionage

    Share
    Facebook Twitter LinkedIn Pinterest WhatsApp

    ESET Research has released its latest APT Activity Report, which highlights activities of select advanced persistent threat (APT) groups that were documented by ESET researchers from April 2024 until the end of September 2024. ESET observed a notable expansion in targeting by China-aligned MirrorFace. Typically focused on Japanese entities, it extended its operations to include a diplomatic organization in the European Union for the first time, while continuing to prioritize its Japanese targets. Additionally, China-aligned APT groups have been increasingly relying on the open-source and multiplatform SoftEther VPN to maintain access to victims’ networks. Researchers also observed indications that Iran-aligned groups might be leveraging their cybercapabilities to support diplomatic espionage and, potentially, kinetic operations.

    “With regard to China-aligned threat groups, we detected extensive use of the SoftEther VPN by Flax Typhoon, observed Webworm switching from its full-featured backdoor to using the SoftEther VPN Bridge on machines belonging to governmental organizations in the EU, and noticed GALLIUM deploying SoftEther VPN servers at telecommunications operators in Africa,” says Director of Threat Research at ESET, Jean-Ian Boutin. “For the first time, we observed MirrorFace targeting a diplomatic organization within the EU, a region that remains a focal point for several China-, North Korea-, and Russia-aligned threat actors. Many of these groups are particularly focused on governmental entities and the defense sector,” he adds.

    Iran-aligned groups, on the other hand, compromised several financial services firms in Africa – a continent geopolitically important to Iran, conducted cyberespionage against Iraq and Azerbaijan, neighboring countries with which Iran has complex relationships, and increased their stake in the transport sector in Israel. Despite this seemingly narrow geographical targeting, Iran-aligned groups maintained a global focus, further pursuing diplomatic envoys in France and educational organizations in the United States.

    North Korea-aligned threat actors persisted with their pursuit of stolen funds – both traditional currencies and cryptocurrencies. We observed these groups continuing their attacks on defense and aerospace companies in Europe and the US, as well as targeting cryptocurrency developers, think tanks, and NGOs. One such group, Kimsuky, began abusing Microsoft Management Console files, which are typically used by system administrators but can execute any Windows command. Additionally, several North Korea-aligned groups frequently misused popular cloud-based services.

    And finally, ESET Research detected Russia-aligned cyberespionage groups frequently targeting webmail servers such as Roundcube and Zimbra, usually with spearphishing emails that trigger known XSS vulnerabilities. Besides Sednit targeting governmental, academic, and defense-related entities worldwide, ESET identified another Russia-aligned group, GreenCube, stealing email messages via XSS vulnerabilities in Roundcube. Other Russia-aligned groups continued to focus on Ukraine, with Gamaredon deploying large spearphishing campaigns while reworking its tools using and abusing both Telegram and Signal messaging apps. Additionally, Sandworm utilized its new Windows backdoor named WrongSens. ESET also analyzed the public hack-and-leak of data from the Polish Anti-Doping Agency, which was likely compromised by an initial access broker who then shared access with the Belarus-aligned FrostyNeighbor APT group, an entity behind cyber-enabled disinformation campaigns critical of NATO.

    In Asia, ESET observed that campaigns continued to focus primarily on governmental organizations. However, research also noticed an increased emphasis on the education sector, particularly targeting researchers and academics focused on the Korean peninsula and Southeast Asia. This shift was driven by threat actors aligned with China and North Korea’s interests. Lazarus, one of the North Korea-aligned groups, continued to attack entities around the globe in the financial and technology sectors. In the Middle East, several Iran-aligned APT groups continued to attack governmental organizations, with Israel being the most affected country.

    Over the past two decades, Africa has become a significant geopolitical partner for China, and we have seen China-aligned groups expand their activities on that continent. In Ukraine, Russia-aligned groups continued to be the most active, heavily impacting governmental entities, the defense sector, and essential services such as energy, water, and heat supply.

    The highlighted operations are representative of the broader landscape of threats ESET investigated during this period. ESET products protect our customers’ systems from the malicious activities described in this report. Intelligence shared here is based mostly on proprietary ESET telemetry data. These threat intelligence analyses, known as ESET APT Reports PREMIUM, assist organizations tasked with protecting citizens, critical national infrastructure, and high-value assets from criminal and nation-state-directed cyberattacks. More information about ESET APT Reports PREMIUM and its delivery of high-quality, strategic, actionable, and tactical cybersecurity threat intelligence is available at the ESET Threat Intelligence page.

    About ESET:

    ESET® provides cutting-edge digital security to prevent attacks before they happen. By combining the power of AI and human expertise, ESET stays ahead of known and emerging cyberthreats — securing businesses, critical infrastructure, and individuals. Whether it’s endpoint, cloud or mobile protection, our AI-native, cloud-first solutions and services remain highly effective and easy to use. ESET technology includes robust detection and response, ultra-secure encryption, and multifactor authentication. With 24/7 real-time defense and strong local support, we keep users safe and businesses running without interruption. An ever-evolving digital landscape demands a progressive approach to security: ESET is committed to world-class research and powerful threat intelligence, backed by R&D centers and a strong global partner network.

    Share. Facebook Twitter Pinterest LinkedIn WhatsApp

    Related Posts

    Business

    Oris Presents a Curated Selection of Watches for Ramadan and Eid Gifting

    Business

    IATA Opens Nominations for 2026 Edition of Diversity & Inclusion Awards

    News

    Kuwait shimmers in national colors; MoI at the ready

    Business

    Saudi Arabia strengthens leadership in life sciences through regulatory reform and digital innovation

    Business

    KIB | The Stadium concludes an exceptional fourth season, setting new benchmarks for sports and community engagement

    Business

    Etihad rail reveals passenger experience ahead of uae network launch

    Business

    Waldorf Astoria Kuwait Reinforces Its Global Standing by Retaining the Forbes Five Star Rating for the Third Consecutive Year

    Business

    Casio to Release Full-Metal G-SHOCK with MIP LCD for Enhanced Readability

    Follow Us
    • Facebook
    • Twitter
    Top Posts
    Business

    Burgan Bank Organizes a Financial Literacy Workshop and Tour of its Head Office for Students of the American United School as Part of the "Let’s Be Aware" Campaign

    In line with the Bank’s “Teach Them Young” CSR program Kuwait, 8 February 2026 Expanding on its robust strategy for investing in Kuwait’s national talents and equipping future-ready youths to lead the banking sector, Burgan Bank hosted the American United School (AUS) high school students at the head office, as part of “Teach Them Young”, Burgan Bank’s youth-focused corporate social responsibility (CSR) initiative. The field visit covered several topics, including the history of banks and the evolution of the banking profession, modern digital banking services, safety practices against fi

    Business

    Gucci’s parent company to acquire 30% stake in Qatari-owned Valentino for €1.7bn

    Luxury group Kering SA has reached an agreement to purchase a 30% stake in the…

    Business

    Hoxton Wealth achieves DIFC authorisation

    Dubai-headquartered international wealth managers, Hoxton Wealth has achieved regulatory approval from the Dubai Financial Services Authority (DFSA),…

    Business

    Smart Choices and Ample Supply keep Dubai’s rental market stable – Bayut & dubizzle

    Dubai, UAE: Bayut and dubizzle, the UAE’s leading property portals, have released their latest analysis of…

    Business

    Qatar airways supercharges global operations with next-generation network

    Airline’s worldwide rollout of SITA’s SD-WAN sets a new benchmark for aviation connectivity and performance GENEVA – 13 November 2025 – Airlines today face the dual challenge of rising passenger volumes and increasingly complex digital operations. Legacy networks are stretched thin, making it harder to keep global outstations connected, secure, and resilient. To overcome these pressures, Qatar Airways, one of the world’s leading airlines, has rolled out SITA’s next-generation Software-Defined Wide Area Network (SD-WAN) technology across its international outstations. The agreement marks the first large-scale SD-WA

    Welcome to Middle East Daily, your daily dose of news and insights from the heart of the Middle East. Explore the latest headlines, delve into thought-provoking analysis, and engage with stories that define our region's narrative.

    Facebook Twitter
    Categories
    • Business (582)
    • Lifestyle (126)
    • News (134)
    • Technology (96)
    Top Insights
    Business

    KIB’s Mubader Center signs a strategic cooperation memorandum with the Kuwait Asian Import & Export Company

    Business

    Masdar hosts European business partners and executives in Madrid to accelerate advanced energy partnerships

    © 2026 Middle East Daily.
    • Home
    • Privacy Policy
    • Terms & Conditions

    Type above and press Enter to search. Press Esc to cancel.