Earth Alux Hackers Use VARGEIT Malware to Target Global Organizations

A dangerous China-linked hacking group, Earth Alux, has been conducting cyber espionage attacks on major industries across Asia-Pacific and Latin America. Using advanced malware called VARGEIT, these hackers infiltrate organizations to steal sensitive data and disrupt operations.
Their targets include government agencies, technology firms, logistics companies, telecom providers, and IT services—posing a serious risk to critical industries.
- Earth Alux Expands Operations – Initially targeting Asia-Pacific countries like Thailand, Taiwan, and Malaysia, the group has now expanded to Brazil and other Latin American nations.
- Exploiting Server Vulnerabilities – Hackers gain access by attacking exposed servers and planting web shells like GODZILLA to drop malware.
- VARGEIT Backdoor Malware – A highly advanced malware that allows data theft, process monitoring, and stealthy command execution.
- MSPaint Injection Technique – Instead of leaving files on the system, hackers inject malware into mspaint.exe, making detection extremely difficult.
- Stealthy Data Theft – The malware steals sensitive files, sends them to cloud storage, and erases traces to avoid detection.
The Earth Alux hacking group is using advanced malware techniques to conduct silent espionage operations against major organizations. Their use of VARGEIT malware and the MSPaint injection technique makes detection and prevention challenging.
To defend against such threats, businesses must strengthen cybersecurity defenses with NPAV Endpoint Security and stay vigilant against hidden malware attacks.
Protect your systems before it’s too late – Stay Secure with NPAV!
- Other (42)
- Ransomware (141)
- Events and News (27)
- Features (45)
- Security (461)
- Tips (79)
- Google (23)
- Achievements (11)
- Products (34)
- Activation (7)
- Dealers (1)
- Bank Phishing (44)
- Malware Alerts (205)
- Cyber Attack (254)
- Data Backup (11)
- Data Breach (93)
- Phishing (154)
- Securty Tips (1)
- Browser Hijack (18)
- Adware (15)
- Email And Password (67)
- Android Security (66)
- Knoweldgebase (38)
- Botnet (15)
- Updates (3)
- Alert (71)
- Hacking (57)
- Social Media (8)
- vulnerability (56)
- Hacker (31)
- Spyware (9)
- Windows (6)
- Microsoft (21)
- Uber (1)
- YouTube (1)
- Trojan (2)
- Website hacks (4)
- Paytm (1)
- Credit card scam (1)
- Telegram (3)
- RAT (5)
- Bug (3)
- Twitter (2)
- Facebook (7)
- Banking Trojan (7)
- Mozilla (2)
- COVID-19 (5)
- Instagram (2)
- NPAV Announcement (9)
- IoT Security (1)
- Deals and Offers (2)
- Cloud Security (11)
- Offers (5)
- Gaming (1)
- FireFox (2)
- LinkedIn (2)
- WhatsApp (4)
- Amazon (2)
- DMart (1)
- Payment Risk (4)
- Occasion (3)
- firewall (2)
- Cloud malware (2)
- Cloud storage (2)
- Financial fraud (9)
- Impersonation phishing (1)
- DDoS (5)
- Smishing (2)
- Whale (0)
- Whale phishing (4)
- WINRAR (2)
- ZIP (2)