< BACK TO NEWS
importantSYS.SOURCE: The Hacker News2026-08-24T13:38:31+05:30

UAT-10147 Leverages AI and SPECTRE for Scalable Server Attacks and Linux Rootkit Deployment

UAT-10147, a Chinese-speaking cybercrime group, employs AI-driven frameworks like DeepAudit and PentestGPT to automate server attacks, deploy SPECTRE for EDR bypass, and install Linux rootkits. The group exploits known vulnerabilities such as CVE-2022-0995 and CVE-2021-3156 to achieve remote code execution and persistent access across Windows and Linux servers globally.

Cybersecurity researchers have disclosed details of a Chinese-speaking cybercrime group dubbed UAT-10147 that's targeting Windows and Linux web servers globally across the education, media, technology, and gaming sectors.

The vast majority of the targets are located in Brazil, Bolivia, China, Canada, and Vietnam. Details of the threat activity came to light following the discovery of an open

Read original article

*** END OF TRANSMISSION ***