Back to Feed
BreachesMar 24, 2026

‼️🇰🇭 A threat actor using the handle "UNIT_PEGASUS" is auctioning network access to a Cambodian...

Threat actor UNIT_PEGASUS auctions network access to Cambodian telecom firm on dark web.

Summary

A threat actor operating under the handle UNIT_PEGASUS is publicly auctioning network access to a major Cambodian telecommunications company (estimated $180M revenue) on a dark web forum. The advertised access includes GlobalProtect VPN and RDP credentials with domain administrator privileges, indicating deep network compromise. This represents a critical supply-chain and infrastructure risk for the telecom sector and potentially downstream customers.

Indicators of Compromise

  • malware — UNIT_PEGASUS