Targeting Linux systems in Nepal and South Africa
Date of report
  • April 2023
Affiliations
Chinese threat actor Gallium is using a new variant of the PingPull malware to target the Linux systems of finance, government, and telecommunications organizations across Africa, Europe, and Southeast Asia.
Suspected victims
  • Finance, government, and telecommunications organizations across Africa, Europe, and Southeast Asia
Suspected state sponsor
  • China
Type of incident
  • Espionage
Target category
  • Civil society
  • Government
  • Private sector
Victim government reaction
  • Unknown
Policy response
Suspected state sponsor response