OctLurk and SilkLurk: newly identified tailored backdoors in cyber-espionage campaign in Central Asia
2026-07-30T20:51:49Z•187f18d556b3f86d335b61d4711b28635b0b6befe3e170ae5efd45139ee83ded
AfricaBitLockerC2Central AsiaDNS AAAAKasperskyMSSQLMicrosoft GraphMiddle EastRDPRMMSoutheast AsiaViPNetbackdoorcredential dumpingcryptocurrency theft","seed phrase theft","browser stealer","Rilcyber-espionagedata exfiltrationin-memory malwarekeyloggingnetwork scanningransomwaresupply-chain attackthreat-intelligenceweb shell
What happened
Kaspersky Securelist reports covering July 2026 threats, including tailored in-memory espionage backdoors targeting Central Asia, ransomware affecting Windows/Linux/ESXi, Mirage Kitten tooling in the Middle East and Africa, BitLocker-based extortion, Outlook and DNS-based C2, supply-chain abuse of the ViPNet update system, Southeast Asian government targeting, cryptocurrency wallet theft, industrial threats, and Microsoft device-code phishing.
Why it matters
A reviewed impact interpretation has not been published for this record.
Evidence and limitations
- Source ID
- kaspersky_securelist
- Record identifier
- 187f18d556b3f86d335b61d4711b28635b0b6befe3e170ae5efd45139ee83ded
- Enrichment time
- 2026-07-30T20:51:49Z
- AI-assisted enrichment
- Yes
This record may overlap with other records. Its enrichment can be incomplete or wrong, and machine assistance was used. Validate consequential decisions against the linked source and your own environment.