OctLurk and SilkLurk: newly identified tailored backdoors in cyber-espionage campaign in Central Asia

2026-07-30T20:51:49Z187f18d556b3f86d335b61d4711b28635b0b6befe3e170ae5efd45139ee83ded
AfricaBitLockerC2Central AsiaDNS AAAAKasperskyMSSQLMicrosoft GraphMiddle EastRDPRMMSoutheast AsiaViPNetbackdoorcredential dumpingcryptocurrency theft","seed phrase theft","browser stealer","Rilcyber-espionagedata exfiltrationin-memory malwarekeyloggingnetwork scanningransomwaresupply-chain attackthreat-intelligenceweb shell

What happened

Kaspersky Securelist reports covering July 2026 threats, including tailored in-memory espionage backdoors targeting Central Asia, ransomware affecting Windows/Linux/ESXi, Mirage Kitten tooling in the Middle East and Africa, BitLocker-based extortion, Outlook and DNS-based C2, supply-chain abuse of the ViPNet update system, Southeast Asian government targeting, cryptocurrency wallet theft, industrial threats, and Microsoft device-code phishing.

Why it matters

A reviewed impact interpretation has not been published for this record.

Evidence and limitations

Source ID
kaspersky_securelist
Record identifier
187f18d556b3f86d335b61d4711b28635b0b6befe3e170ae5efd45139ee83ded
Enrichment time
2026-07-30T20:51:49Z
AI-assisted enrichment
Yes

This record may overlap with other records. Its enrichment can be incomplete or wrong, and machine assistance was used. Validate consequential decisions against the linked source and your own environment.

Record · OctLurk and SilkLurk: newly identified tailored backdoors in cyber-espionage campaign in Central Asia · Baitaphish