Earth Zhulong also known as Goblin Panda is a suspected advanced persistent threat (APT) which is known to target the technology telecom and media sectors in Southeast Asia.
The threat actor utilizes phishing documents with embedded macros to gain initial access and GPOs to distribute malware across the network.
Various tools and malicious software are used during the operation including Cobalt Strike SharpHound EarthWorm Macamax and ShellFang.