[{"data":1,"prerenderedAt":-1},["ShallowReactive",2],{"$fL2m2pie_KFmKVKv8ojQBog3wmQ2-Y0_BxiKmuwGnwLI":3},{"lesson":4},{"id":5,"slug":6,"article_id":7,"title":8,"body":9,"prevention":10,"framework_refs":11,"status":18,"created_at":19,"published_at":20,"article":21,"tags":25,"podcasts":38},"817e6b78-6d1b-4b93-a997-0082992ec863","chinese-cybercrime-group-ta4922-escalates-global-social-engineering-campaigns","80541d67-38a2-4b47-9d56-32699fef884c","Chinese Cybercrime Group TA4922 Escalates Global Social Engineering Campaigns","Chinese-speaking cybercrime group TA4922 has dramatically increased their attack pace, becoming the most active tracked cybercrime actor through sophisticated social engineering and credential phishing campaigns. The group targets organizations across Asia-Pacific, Europe, and Africa using multiple malware families to steal credentials, commit fraud, and sell network access to other criminals. This escalation demonstrates how financially motivated threat actors are adopting nation-state level operational tempo and tradecraft, making traditional security controls insufficient against persistent, well-resourced criminal organizations.","**Immediate actions:**\n- Implement multi-factor authentication on all user accounts and privileged systems\n- Deploy advanced email security solutions with sandboxing and URL rewriting\n- Conduct emergency security awareness training focused on current phishing techniques\n\n**Long-term improvements:**\n- Establish zero-trust architecture with continuous user and device verification\n- Deploy behavioral analytics to detect credential compromise and lateral movement\n- Implement privileged access management with just-in-time access controls\n\n**Detection measures:**\n- Monitor for suspicious login patterns and impossible travel scenarios\n- Deploy endpoint detection and response tools to identify RAT infections\n- Establish threat intelligence feeds to track TA4922 and similar groups",[12,13,14,15,16,17],"CIS Control 6 (Access Control Management)","CIS Control 14 (Security Awareness)","NIST AC-2 (Account Management)","NIST AC-7 (Unsuccessful Logon Attempts)","NIST SI-4 (System Monitoring)","MITRE ATT&CK T1566 (Phishing)","published","2026-06-04T12:06:35.211255+00:00","2026-06-04T12:06:34.933+00:00",{"id":7,"url":22,"slug":23,"title":24},"https:\u002F\u002Fwww.securityweek.com\u002Fchinese-cybercrime-group-ta4922-in-spotlight-for-record-campaign-pace\u002F","chinese-cybercrime-group-in-spotlight-for-record-campaign-pace-4e9644","Chinese Cybercrime Group in Spotlight for Record Campaign Pace",[26,32],{"id":27,"name":28,"slug":29,"description":30,"color":31},"1ec88fde-2d0f-4ed8-932a-33f5ccc0fdc7","Access Control","access-control","Excessive privileges, missing MFA, weak auth","#f97316",{"id":33,"name":34,"slug":35,"description":36,"color":37},"7261eb8f-acd4-4d93-a489-7fdd652ec0ea","Security Awareness","security-awareness","Phishing, social engineering, human error","#22c55e",[]]