Threat Research

    In March 2026, the team identified activity by a China-nexus threat actor targeting countries in the Persian Gulf region. The campaign used a multi-stage attack chain to deploy a PlugX backdoor variant on compromised systems. Both the shellcode and PlugX backdoor employed obfuscation techniques to hinder reverse engineering....
    Trend Micro has been monitoring Earth Simnavaz, a cyber espionage group linked to Iranian interests, which primarily targets the energy sector and critical infrastructure. Recently, there has been an uptick in cyberattacks attributed to this group, focusing on government sectors in the UAE and the Gulf region....
    Looking for Something?
    Threat Research Categories:
    Tags