$ techbeacon▋
Malware

Chinese-linked Hackers Deploy New Rust-Based Antino Backdoor to Infiltrate Hundreds of Asian Institutions

Chinese-linked Hackers Deploy New Rust-Based Antino Backdoor to Infiltrate Hundreds of Asian Institutions

A previously unknown Windows backdoor, dubbed Antino, has been used by a China-affiliated cyber‑espionage group to compromise roughly 350 computer systems across multiple Asian nations, according to a recent security analysis.

The intrusion campaign, catalogued by researchers as activity cluster UAT‑11587, targeted a range of entities including government ministries, defence agencies, diplomatic missions, policy think‑tanks and academic institutions. The affected organizations span at least several countries in the region, though the exact list has not been disclosed.

Antino is notable for being written in Rust, a programming language gaining popularity for its memory‑safety features. Its use marks a shift from the more common C and C++‑based malware traditionally seen in state‑sponsored operations, suggesting the attackers are leveraging newer development tools to evade detection.

Security investigators say the backdoor is designed to establish persistent access, exfiltrate data and execute additional payloads on compromised hosts. Its deployment aligns with a broader pattern of Chinese‑linked threat actors focusing on strategic sectors to gather intelligence that could inform geopolitical or military objectives.

While the precise timeline of the intrusion remains unclear, the discovery of Antino adds to a growing inventory of sophisticated tools attributed to Chinese cyber‑espionage groups. Analysts note that the emergence of Rust‑based malware may complicate existing defensive measures, as many security products are still tuned to detect more conventional code signatures.

Regional cybersecurity agencies have been alerted to the threat, and affected institutions are reportedly undertaking remediation steps, including system audits and patch deployments. The incident underscores the ongoing challenge of defending critical infrastructure against advanced persistent threats that continuously evolve their tactics and tooling.

Source: GBHackers
Arjun Pratap Rana — Arjun reports on data breaches and corporate security incidents, focusing on how leaks happen and what they mean for affected users. Verifies claims against HaveIBeenPwned and leak listings.

Comments (0)

Be the first to comment.

Join the discussion

Protected by reCAPTCHA v3

Related