BreachesMar 24, 2026
‼️🇰🇭 A threat actor using the handle "UNIT_PEGASUS" is auctioning network access to a Cambodian...
Threat actor UNIT_PEGASUS auctions network access to Cambodian telecom firm on dark web.
Summary
A threat actor operating under the handle UNIT_PEGASUS is publicly auctioning network access to a major Cambodian telecommunications company (estimated $180M revenue) on a dark web forum. The advertised access includes GlobalProtect VPN and RDP credentials with domain administrator privileges, indicating deep network compromise. This represents a critical supply-chain and infrastructure risk for the telecom sector and potentially downstream customers.
Indicators of Compromise
- malware — UNIT_PEGASUS