GoSerpent Malware Targets Southeast Asian Governments in Espionage Campaign
Cybersecurity researchers have identified a new malware strain called GoSerpent that is being used to target government and diplomatic organizations across Southeast Asia. The campaign focuses on long-term cyber espionage, enabling attackers to maintain persistent access while collecting sensitive files and system credentials.


GoSerpent functions as a remote access trojan (RAT), allowing threat actors to deploy additional tools for credential dumping, file collection, and secure data exfiltration. Researchers also observed updated malware components that improve stealth and support prolonged intelligence-gathering operations.
Security experts believe the campaign shares similarities with previously documented Asia-Pacific espionage activities, highlighting the growing sophistication of state-sponsored cyber threats. Organizations are advised to strengthen endpoint monitoring, secure credentials, and detect unusual network activity to reduce the risk of compromise.
EDR On-Premise – Detects RATs, advanced persistent threats (APTs), lateral movement, and suspicious endpoint behavior.