Earth Centaur, previously known as Tropic Trooper, is a long-running cyberespionage threat group that has been active since 2011. In July 2020, Trend Micro researchers noticed interesting activity coming from the group, and they have been closely monitoring it since. The actors seem to be targeting organizations in the transportation industry and government agencies related to transport.
Trend Micro researchers observed that the group tried to access some internal documents (such as flight schedules and documents for financial plans) and personal information on the compromised hosts (such as search histories). Currently, Trend Micro researchers have not discovered substantial damage to these victims as caused by the threat group. However, researchers believe that it will continue collecting internal information from the compromised victims and that it is simply waiting for an opportunity to use this data.
Read more…
Source: Trend Micro