Nation-stateMay 5, 2026
China-Linked UAT-8302 Targets Governments Using Shared APT Malware Across Regions
China-linked APT UAT-8302 targets South American and Southeast European governments with custom malware.
Summary
Cisco Talos has attributed a sophisticated China-nexus APT group tracked as UAT-8302 to attacks against government entities in South America since late 2024 and southeastern Europe in 2025. The threat actor deploys custom-made malware families during post-exploitation phases. The campaign demonstrates sustained targeting of government agencies across multiple geographic regions.
Entities
UAT-8302 (threat_actor)Cisco Talos (vendor)