< Back
cyberthreat news
07 December 2023

APT41 faction started using Google&#039;s Red Team tool

According to a report dated April 18, 2023, the Chinese cybercriminal group APT41, also known as HOODOO, has launched a campaign of attacks targeting Taiwanese media. 

It seems that the attackers started using a tool called GC2 during their campaign, which provides command center functionality. GC2 is an open source project written in Go and designed specifically for penetration testing organizations. It includes an agent that is installed on a compromised device and connects to a URL in Google Sheets to receive commands. Experts have noted that APT41 attacks began with phishing schemes targeting Taiwanese media. 

The impact of this campaign could be significant because Taiwanese media play an important role in Taiwan's political and social life, and any attempt to disrupt it could have repercussions on Taiwanese life and public opinion. In addition, attacks carried out by APT41 are known to be sophisticated and use advanced hacking techniques, which could make detection and neutralization of attacks more difficult. This could lead to new campaigns of attacks focused on espionage.  

Read more about it : here