Where Is SilverFox Attacking? Mapping the Hacker Group’s APAC Targets
AI-summarised brief · reviewed before publication
SilverFox, a China‑linked advanced persistent threat (APT) group, has concentrated its cyber‑espionage operations on the Asia‑Pacific region, according to Kaspersky. The firm’s research shows 60.4 % of the group’s global activity originates in APAC, with 91.2 % of those attacks targeting mainland China, Hong Kong, Taiwan and Macau. Manufacturing firms are the primary victims, accounting for 36.6 % of incidents, followed by IT services (14.5 %) and general business (13.8 %). The group employs custom‑built malware such as ValleyRAT and Winos, delivered via phishing, compromised websites and malicious IP addresses. Emerging hotspots include Singapore, Myanmar and Cambodia, and the group has begun distributing counterfeit Claude AI‑chatbot applications to harvest data. Kaspersky warns that AI‑enhanced tactics are outpacing many corporate defenses.
💡 Why It Matters
- · The focus on manufacturing and AI‑driven tools gives SilverFox a strategic edge to siphon intellectual property from the region’s economic engine, forcing firms to overhaul detection capabilities.