Tuesday, June 16, 2026
  • About Web3Wire
  • Web3Wire NFTs
  • .w3w TLD
  • $W3W Token
  • Web3Wire DAO
  • Media Network
  • RSS Feed
  • Contact Us
Web3Wire
No Result
View All Result
  • Home
  • Web3
    • Latest
    • AI
    • Business
    • Blockchain
    • Cryptocurrencies
    • Decentralized Finance
    • Metaverse
    • Non-Fungible Token
    • Press Release
  • Technology
    • Consumer Tech
    • Digital Fashion
    • Editor’s Choice
    • Guides
    • Stories
  • Coins
    • Top 10 Coins
    • Top 50 Coins
    • Top 100 Coins
    • All Coins
  • Exchanges
    • Top 10 Crypto Exchanges
    • Top 50 Crypto Exchanges
    • Top 100 Crypto Exchanges
    • All Crypto Exchanges
  • Stocks
    • Blockchain Stocks
    • NFT Stocks
    • Metaverse Stocks
    • Artificial Intelligence Stocks
  • Events
  • News
    • Latest Crypto News
    • Latest DeFi News
    • Latest Web3 News
  • Home
  • Web3
    • Latest
    • AI
    • Business
    • Blockchain
    • Cryptocurrencies
    • Decentralized Finance
    • Metaverse
    • Non-Fungible Token
    • Press Release
  • Technology
    • Consumer Tech
    • Digital Fashion
    • Editor’s Choice
    • Guides
    • Stories
  • Coins
    • Top 10 Coins
    • Top 50 Coins
    • Top 100 Coins
    • All Coins
  • Exchanges
    • Top 10 Crypto Exchanges
    • Top 50 Crypto Exchanges
    • Top 100 Crypto Exchanges
    • All Crypto Exchanges
  • Stocks
    • Blockchain Stocks
    • NFT Stocks
    • Metaverse Stocks
    • Artificial Intelligence Stocks
  • Events
  • News
    • Latest Crypto News
    • Latest DeFi News
    • Latest Web3 News
No Result
View All Result
Web3Wire
No Result
View All Result
Home Artificial Intelligence

ESET Research: China-aligned FishMonger updates its arsenal, targets governments in Asia and Latin America

June 16, 2026
in Artificial Intelligence, GlobeNewswire, Web3
Reading Time: 5 mins read
5
SHARES
246
VIEWS
Share on TwitterShare on LinkedInShare on Facebook
  • ESET Research discovered two previously undocumented Windows variants of FishMonger’s SprySOCKS backdoor.
  • ESET telemetry shows activity between 2023 and 2024, primarily targeting government organizations in Honduras, Taiwan, Thailand, and Pakistan.
  • Both Windows variants support communication over TCP, UDP, and WebSocket protocols and implement over 30 commands.
  • The Windows WIN_DRV variant creates a stealthy passive TCP backdoor, relying on a kernel driver to redirect traffic to the backdoor’s hidden TCP port whenever specially crafted data is detected inside a received TCP packet.

BRATISLAVA, June 16, 2026 (GLOBE NEWSWIRE) — ESET researchers have discovered two as-yet undocumented Windows variants (WIN_DRV and WIN_PLUS) of SprySOCKS, a previously Linux-only backdoor reportedly used by FishMonger, the group believed to be operated by a Chinese contractor named I-SOON. While ESET initially discovered the malware samples on VirusTotal uploaded in April 2024, ESET telemetry shows real activity between 2023 and 2024, with several victims in Honduras, Taiwan, Thailand, and Pakistan, targeting mostly government organizations.

The WIN_DRV variant includes support for over 30 Command and Control (C&C) commands, covering various functionalities, including system information collection and process enumeration as well as service management and file management functions, such as listing, creating, deleting, and transferring files.

In addition to the core backdoor functionality, FishMonger’s backdoor weaponizes a kernel driver for advanced stealth. SprySOCKS utilizes this driver to hide the malware’s network connections, processes, files, and registry keys and enables TCP traffic diversion, allowing the malware operators to send commands to the backdoor through a random TCP port on the victim’s device without exposing the backdoor’s real listening port in the network traffic.

“The Windows version retains most of the core architecture of its Linux predecessor — including the C&C protocol, encryption used, and overall command handling logic — while substituting Windows-native mechanisms where required and improving the stealthiness of the backdoor by bringing the kernel drivers to the game. Considering the limited indications of possible UEFI bootkit involvement, we advise everyone to keep a close eye on the group’s activities,” says ESET researcher Martin Smolár, who discovered and analyzed FishMonger’s latest arsenal.

Based on ESET telemetry, there are limited indications that some SprySOCKS attack scenarios could involve a UEFI bootkit component, possibly exploiting CVE 2023 24932.

FishMonger — believed to be operated by a Chinese contractor named I-SOON — is a cyberespionage group that falls under the Winnti Group umbrella and is most likely operating out of China, from the city of Chengdu. It is also known as Earth Lusca, TAG-22, Aquatic Panda, or Red Dev 10. ESET Research published an analysis of FishMonger in early 2020 when it heavily targeted universities in Hong Kong during the civic protests that started in June 2019. The group is also known to operate watering-hole attacks. FishMonger’s toolset includes ShadowPad, Spyder, Cobalt Strike, FunnySwitch, SprySOCKS, and the BIOPASS RAT.

For a more detailed analysis about FishMonger’s latest arsenal, check out the ESET Research blog post “Fishmonger’s arsenal upgraded: SprySOCKS for Windows” on WeLiveSecurity.com. Make sure to follow ESET Research on Twitter (today known as X), BlueSky, and Mastodon for the latest news from ESET Research.

About ESET

ESET® provides cutting-edge cybersecurity to prevent attacks before they happen. By combining the power of AI and human expertise, ESET stays ahead of emerging global cyberthreats, both known and unknown— securing businesses, critical infrastructure, and individuals. Whether it’s endpoint, cloud, or mobile protection, our AI-native, cloud-first solutions and services remain highly effective and easy to use. ESET technology includes robust detection and response, ultra-secure encryption, and multifactor authentication. With 24/7 real-time defense and strong local support, we keep users safe and businesses running without interruption. The ever-evolving digital landscape demands a progressive approach to security: ESET is committed to world-class research and powerful threat intelligence, backed by R&D centers and a strong global partner network. For more information, visit http://www.eset.com or follow our social media, podcasts and blogs.

About Web3Wire
Web3Wire – Information, news, press releases, events and research articles about Web3, Metaverse, Blockchain, Artificial Intelligence, Cryptocurrencies, Decentralized Finance, NFTs and Gaming.
Visit Web3Wire for Web3 News and Events, Block3Wire for the latest Blockchain news and Meta3Wire to stay updated with Metaverse News.

ShareTweet1ShareSendShare2
Previous Post

74Software: Disclosure of transactions in own shares from June 8 to 12, 2026

Next Post

AI-Driven Revenue Optimisation Delivers Nearly $600 Million in Additional Profit for Travel Companies, Mize Data Reveals

Related Posts

AI-Driven Revenue Optimisation Delivers Nearly $600 Million in Additional Profit for Travel Companies, Mize Data Reveals

TEL AVIV, Israel, June 16, 2026 (GLOBE NEWSWIRE) -- As travel companies face increasing pressure to improve margins in a highly competitive market, new data from Mize suggests AI-powered revenue optimization has become a major source of profit recovery across the industry. Marking its 10th anniversary, Mize revealed that its...

Read moreDetails

74Software: Disclosure of transactions in own shares from June 8 to 12, 2026

Press Release 74Software: Disclosure of transactions in own shares Paris, June 16, 2026 – In accordance with the authorization given by the Combined General Meeting of May 19, 2026, for the implementation of a share buyback program, 74Software (LEI: 96950022O6SP7FQONJ77) declares below the purchases of its own shares (FR0011040500) from...

Read moreDetails

2026 Beijing CBD Forum Annual Conference Opens

BEIJING, June 16, 2026 (GLOBE NEWSWIRE) -- On June 15, the 2026 Beijing CBD Forum Annual Conference officially opened and will run for three days. Guided by the principles of internationalization, market orientation, and professionalism, this year's forum is themed "Openness and New Quality Productive Forces: Global Transformation and China's...

Read moreDetails

New ExchangiFi Research Estimates $5.0 Trillion in U.S. Taxable Equity Suited for Section 351 ETF Conversions

Palm Beach Gardens, United States, June 16, 2026 (GLOBE NEWSWIRE) -- White paper finds trillions in household taxable equity wealth locked in place by realization costs above 35%, and argues conversions are most likely revenue-neutral for the Treasury ExchangiFi LLC, the platform for Section 351 tax-deferred exchanges, today released a...

Read moreDetails

UK Organizations Are Moving Faster on AI, But Governance Gaps Threaten to Undermine Progress, New iManage Research Finds

CHICAGO, June 16, 2026 (GLOBE NEWSWIRE) -- iManage, the company dedicated to Making Knowledge Work™, today released UK-specific findings from its iManage Knowledge Work Benchmark Report 2026, a global study of 3,185 business and technology decision-makers across 26 countries. The data shows that UK organizations are moving faster than their...

Read moreDetails

InCred Capital Expands Global Footprint with Launch of US Operations; Appoints Arunava Das as CEO, North America

MUMBAI, India, June 16, 2026 /PRNewswire/ -- InCred Capital, the institutional, wealth and asset management arm of InCred Group, today announced the launch of its US operations with the opening of its New York office. Building on its established presence across India, Singapore, Dubai and London, the launch marks another...

Read moreDetails

Compunnel Launches AI Startup Incubator at Noida and New Jersey Facility, Invites Applications for Compunnel Ventures AI

Builds on successful investments in Eximius, TestGrid, and Dori; offers selected startups capital, mentoring, workspace, and enterprise go-to-market support; reinforces commitment to AI innovation ecosystemNOIDA, India, June 16, 2026 /PRNewswire/ -- Compunnel today announced the launch of an AI startup incubator at its Noida and New Jersey facilities, inviting applications...

Read moreDetails

iSOFT Contributes Intelligent Driving OS as AUTOSAR CAPI Global Code Baseline

SHANGHAI, June 16, 2026 (GLOBE NEWSWIRE) -- At the 17th AUTOSAR Open Conference (AOC) in Shanghai, iSOFT (iSOFT Infrastructure Software Co., Ltd.) contributed its self-developed intelligent driving operating system as the global code baseline for AUTOSAR's Common Adaptive Platform Implementation (CAPI) - a notable milestone in the evolution of the...

Read moreDetails

STMicroelectronics announces (i) a US$1.5 billion dual-tranche offering of New Convertible Bonds and (ii) the early redemption of its 2027 Convertible Bonds

PR N°C3397C Not for release, publication or distribution directly or indirectly, in whole or in part, in or into the United States, Australia, Canada, Japan or South Africa or in any other jurisdiction in which offers or sales would be prohibited by applicable law. This announcement is not an offer...

Read moreDetails

SumUp Launches in Canada, Bringing Simple, Transparent Payments Solutions to Its 38th Market

BOULDER, Colo., June 16, 2026 (GLOBE NEWSWIRE) -- SumUp, the global financial technology company, today announced its official launch in Canada. The milestone makes Canada SumUp's 38th market and its latest step in building out its presence across the Americas, as the company continues its mission to make commerce simpler...

Read moreDetails
Web3Wire NFTs - The Web3 Collective

Web3Wire, $W3W Token and .w3w tld Whitepaper

Web3Wire, $W3W Token and .w3w tld Whitepaper

Claim your space in Web3 with .w3w Domain!

Web3Wire

Trending on Web3Wire

  • GENISOM AI Debuts at ICRA 2026 with Full-Stack Embodied Intelligence System

    30 shares
    Share 12 Tweet 8
  • Top Cross-Chain DeFi Solutions to Watch by 2025

    130 shares
    Share 52 Tweet 33
  • Top Layer 1 Crypto Projects to Watch in 2025

    16 shares
    Share 6 Tweet 4
  • Understanding Soulbound Tokens SBT Their Definition and Significance

    65 shares
    Share 26 Tweet 16
  • Unifying Blockchain Ecosystems: 2024 Guide to Cross-Chain Interoperability

    171 shares
    Share 68 Tweet 43
Join our Web3Wire Community!

Our newsletters are only twice a month, reaching around 10000+ Blockchain Companies, 800 Web3 VCs, 600 Blockchain Journalists and Media Houses.


* We wont pass your details on to anyone else and we hate spam as much as you do. By clicking the signup button you agree to our Terms of Use and Privacy Policy.

Web3Wire Podcasts

Upcoming Events

There are currently no events.

Latest on Web3Wire

  • AI-Driven Revenue Optimisation Delivers Nearly $600 Million in Additional Profit for Travel Companies, Mize Data Reveals
  • ESET Research: China-aligned FishMonger updates its arsenal, targets governments in Asia and Latin America
  • 74Software: Disclosure of transactions in own shares from June 8 to 12, 2026
  • 2026 Beijing CBD Forum Annual Conference Opens
  • New ExchangiFi Research Estimates $5.0 Trillion in U.S. Taxable Equity Suited for Section 351 ETF Conversions

RSS Latest on Block3Wire

  • The Algorithmic Monographs: A Five-Volume Civil Code for the Age of Autonomous Intelligence
  • Ali Sadhik Shaik: Practitioner, Scholar, and Author – Focused on the Governance of Intelligent Systems
  • The Klyrox Protocol: A Decentralized Framework to Close the AI Accountability Gap
  • Covo Finance: Revolutionary Crypto Leverage Trading Platform
  • WorldStrides and HEX Announce Partnership to Offer High School and University Students Innovative Courses Designed to Improve Their Outlook in the Digital Age

RSS Latest on Meta3Wire

  • The Algorithmic Monographs: A Five-Volume Civil Code for the Age of Autonomous Intelligence
  • Ali Sadhik Shaik: Practitioner, Scholar, and Author – Focused on the Governance of Intelligent Systems
  • The Klyrox Protocol: A Decentralized Framework to Close the AI Accountability Gap
  • Thumbtack Honored as a 2023 Transform Awards Winner
  • Accenture Invests in Looking Glass to Accelerate Shift from 2D to 3D
Web3Wire

Web3Wire is your go-to source for the latest insights and updates in Web3, Metaverse, Blockchain, AI, Cryptocurrencies, DeFi, NFTs, and Gaming. We provide comprehensive coverage through news, press releases, event updates, and research articles, keeping you informed about the rapidly evolving digital world.

  • About Web3Wire
  • Founder’s Note
  • Web3Wire NFTs – The Web3 Collective
  • .w3w TLD
  • $W3W Token
  • Web3Wire DAO
  • Event Partners
  • Community Partners
  • Our Media Network
  • Media Kit
  • RSS Feeds
  • Contact Us

Crypto Coins

  • Top 10 Coins
  • Top 50 Coins
  • Top 100 Coins
  • All Coins – Marketcap
  • Crypto Coins Heatmap

Crypto Exchanges

  • Top 10 Exchanges
  • Top 50 Exchanges
  • Top 100 Exchanges
  • All Crypto Exchanges

Crypto Stocks

  • Blockchain Stocks
  • NFT Stocks
  • Metaverse Stocks
  • Artificial Intelligence Stocks

Web3Wire Whitepaper | Tokenomics

Web3 Resources

  • Top Web3 and Crypto Youtube Channels
  • Latest Crypto News
  • Latest DeFi News
  • Latest Web3 News

Blockchain Resources

  • Blockchain and Web3 Resources
  • Decentralized Finance (DeFi) – Research Reports
  • All Crypto Whitepapers

Metaverse Resources

  • AR VR and Metaverse Resources
  • Metaverse Courses
Claim your space in Web3 with .w3w!

The Klyrox Protocol | The Algorithmic Monographs

Top 50 Web3 Blogs and Websites
Web3Wire Podcast on Spotify Web3Wire Podcast on Amazon Music 
Web3Wire - Web3 and Blockchain - News, Events and Press Releases | Product Hunt
Web3Wire on Google News

Media Portfolio: Block3Wire | Meta3Wire

  • Privacy Policy
  • Terms of Use
  • Disclaimer
  • Sitemap
  • For Search Engines
  • Crypto Sitemap
  • Exchanges Sitemap

© 2024 Web3Wire. We strongly recommend our readers to DYOR, before investing in any cryptocurrencies, blockchain projects, or ICOs, particularly those that guarantee profits.

Welcome Back!

Login to your account below

Forgotten Password?

Retrieve your password

Please enter your username or email address to reset your password.

Log In

Add New Playlist

No Result
View All Result
  • Coins
    • Top 10 Cryptocurrencies
    • Top 50 Cryptocurrencies
    • Top 100 Cryptocurrencies
    • All Coins
  • Exchanges
    • Top 10 Cryptocurrency Exchanges
    • Top 50 Cryptocurrency Exchanges
    • Top 100 Cryptocurrency Exchanges
    • All Crypto Exchanges
  • Stocks
    • Blockchain Stocks
    • NFT Stocks
    • Metaverse Stocks
    • Artificial Intelligence Stocks

© 2024 Web3Wire. We strongly recommend our readers to DYOR, before investing in any cryptocurrencies, blockchain projects, or ICOs, particularly those that guarantee profits.

This website uses cookies. By continuing to use this website you are giving consent to cookies being used. Visit our Privacy and Cookie Policy.