Cisco Talos Identifies Antino Backdoor Leveraging Outlook and OneDrive in China-Nexus Espionage Campaign
Government and policy organizations across Asia targeted by previously undocumented malware

Key Takeaways
- Cisco Talos has identified a new backdoor, Antino, in a China-nexus espionage campaign.
- The backdoor targets government and policy organizations across Asia.
- Antino leverages Microsoft Outlook and OneDrive for command and control.
- Victims have been identified in Taiwan, India, the Philippines, Cambodia, Pakistan, Thailand, and Myanmar.
Related Security News

Malicious Linux Implants Mimic Asian Mail Security Products
Security researchers have identified three new Linux backdoors -- KamiKaze, MoRoot, and Watercrack -- that mimic legitimate Asian mail security products. The implants blend into administrative traffic to enable remote code execution and persistence while avoiding detection by traditional security tools.

U.S. Treasury Sanctions Eight Tren de Aragua Members Linked to ATM Jackpotting Attacks
The U.S. Treasury Department announced sanctions against eight individuals associated with the Venezuelan gang Tren de Aragua for their alleged involvement in ATM jackpotting attacks across the United States. The operations resulted in the theft of millions of dollars from financial institutions. The sanctions form part of a broader crackdown on transnational criminal networks exploiting automated teller machines through jackpotting techniques.



