MirrorFace Launches Spear-Phishing Campaign Targeting Japan
/ 1 min read
China-linked MirrorFace targets Japan with new spear-phishing campaign. A recent analysis by Trend Micro reveals that the cyber espionage group MirrorFace has launched a spear-phishing campaign aimed at individuals and organizations in Japan, utilizing backdoors known as NOOPDOOR and ANEL. This campaign marks the return of ANEL, previously used by APT10 until 2018, and is characterized by its focus on Japan’s national security and U.S.-China relations. The attackers employ various methods to deliver malicious payloads, including macro-enabled documents and Windows shortcuts, to execute the backdoor and evade detection. The campaign’s shift from targeting enterprises to individuals highlights the need for enhanced security measures, as many victims may lack robust defenses against such sophisticated attacks.