[{"data":1,"prerenderedAt":-1},["ShallowReactive",2],{"$fy9ulTE-wbAEKktq8P97l0r4HlQa4IHH58cRAqnEfy58":3},{"article":4,"iocs":38,"watch_terms":45},{"id":5,"title":6,"slug":7,"summary":8,"ai_summary":9,"brief":10,"full_text":11,"url":12,"image_url":13,"published_at":14,"ingested_at":15,"relevance_score":16,"entities":17,"category_id":18,"category":19,"article_tags":22},"8b66b992-393d-4574-bd77-bd75359b56a6","Silver Fox Expands Asia Cyber Campaign with AtlasCross RAT and Fake Domains","silver-fox-expands-asia-cyber-campaign-with-atlascross-rat-and-fake-domains","Chinese-speaking users are the target of an active campaign that uses typosquatted domains impersonating trusted software brands to deliver a previously undocumented remote access trojan named AtlasCross RAT. \"The operation covers VPN clients, encrypted messengers, video conferencing tools, cryptocurrency trackers, and e-commerce applications, with eleven confirmed delivery domains impersonating","A Chinese-speaking threat actor known as Silver Fox is conducting an active campaign delivering a previously undocumented remote access trojan (RAT) called AtlasCross through typosquatted domains impersonating legitimate software brands. The operation targets users of VPNs, encrypted messengers, video conferencing tools, cryptocurrency trackers, and e-commerce applications across eleven confirmed malicious domains.","Silver Fox campaign targets Chinese users with AtlasCross RAT via typosquatted domains.",null,"https:\u002F\u002Fthehackernews.com\u002F2026\u002F03\u002Fsilver-fox-expands-asia-cyber-campaign.html","https:\u002F\u002Fblogger.googleusercontent.com\u002Fimg\u002Fb\u002FR29vZ2xl\u002FAVvXsEhgQmoJ2iwUTLR-DicdD0xa7_oYXgpGalL3L_-4LyX9YMApiotQC-omFlhdcQByUQat1YJdd7ElMqhp8FDYpoaljcvVmCFPXS4yRRh0_KnKa6FgqoEpiaKHJhoecKKap1MgoPWw1a6H7LfJrYo9m_YXqh3BaoES1tPEmuCbgO3snV34jtkrK7j8t4Qk30jj\u002Fs1600\u002Fcyberattacks-asia.jpg","2026-03-31T11:46:00+00:00","2026-03-31T14:00:15.484584+00:00",8,[],"89f78b1c-3503-45a1-9fc7-e23d2ce1c6d5",{"id":18,"icon":11,"name":20,"slug":21},"Malware","malware",[23,28,33],{"category":24},{"id":25,"icon":11,"name":26,"slug":27},"2c8f44d4-b56e-47cf-9677-04f22c9ee78d","Identity & Access","identity-access",{"category":29},{"id":30,"icon":11,"name":31,"slug":32},"6cbdd207-aaa1-4176-9534-e156b125e917","Nation-state","nation-state",{"category":34},{"id":35,"icon":11,"name":36,"slug":37},"e7b231c8-5f79-4465-8d38-1ef13aea5a14","Threat Intelligence","threat-intelligence",[39,42],{"type":21,"value":40,"context":41},"AtlasCross RAT","Previously undocumented remote access trojan delivered via typosquatted domains in Silver Fox campaign",{"type":21,"value":43,"context":44},"Silver Fox","Chinese-speaking threat actor conducting active campaign targeting Asia-Pacific region",[]]