New: Cymulate Cowork for Agentic Cyber Defense Engineering
Learn More
New Bitsight Integration: Turn Threat Intelligence into Validated Security
Learn More
Introducing Cymulate Vero AI for Agentic Cyber Defense Engineering
Learn More
New Case Study: How a Financial Authority Validates Cyber Resilience
Learn More

Earth Zhulong Targets Southeast Asian Firms

February 28, 2023

Earth Zhulong also known as Goblin Panda is a suspected advanced persistent threat (APT) which is known to target the technology telecom and media sectors in Southeast Asia. The threat actor utilizes phishing documents with embedded macros to gain initial access and GPOs to distribute malware across the network. Various tools and malicious software are used during the operation including Cobalt Strike SharpHound EarthWorm Macamax and ShellFang.