Saturday, March 7, 2026
  • About Web3Wire
  • Web3Wire NFTs
  • .w3w TLD
  • $W3W Token
  • Web3Wire DAO
  • Media Network
  • RSS Feed
  • Contact Us
Web3Wire
No Result
View All Result
  • Home
  • Web3
    • Latest
    • AI
    • Business
    • Blockchain
    • Cryptocurrencies
    • Decentralized Finance
    • Metaverse
    • Non-Fungible Token
    • Press Release
  • Technology
    • Consumer Tech
    • Digital Fashion
    • Editor’s Choice
    • Guides
    • Stories
  • Coins
    • Top 10 Coins
    • Top 50 Coins
    • Top 100 Coins
    • All Coins
  • Exchanges
    • Top 10 Crypto Exchanges
    • Top 50 Crypto Exchanges
    • Top 100 Crypto Exchanges
    • All Crypto Exchanges
  • Stocks
    • Blockchain Stocks
    • NFT Stocks
    • Metaverse Stocks
    • Artificial Intelligence Stocks
  • Events
  • News
    • Latest Crypto News
    • Latest DeFi News
    • Latest Web3 News
  • Home
  • Web3
    • Latest
    • AI
    • Business
    • Blockchain
    • Cryptocurrencies
    • Decentralized Finance
    • Metaverse
    • Non-Fungible Token
    • Press Release
  • Technology
    • Consumer Tech
    • Digital Fashion
    • Editor’s Choice
    • Guides
    • Stories
  • Coins
    • Top 10 Coins
    • Top 50 Coins
    • Top 100 Coins
    • All Coins
  • Exchanges
    • Top 10 Crypto Exchanges
    • Top 50 Crypto Exchanges
    • Top 100 Crypto Exchanges
    • All Crypto Exchanges
  • Stocks
    • Blockchain Stocks
    • NFT Stocks
    • Metaverse Stocks
    • Artificial Intelligence Stocks
  • Events
  • News
    • Latest Crypto News
    • Latest DeFi News
    • Latest Web3 News
No Result
View All Result
Web3Wire
No Result
View All Result
Home Artificial Intelligence

New Chinese group LongNosedGoblin deploys cyberespionage tools in Southeast Asia and Japan, ESET Research discovers

December 18, 2025
in Artificial Intelligence, GlobeNewswire, Web3
Reading Time: 5 mins read
5
SHARES
247
VIEWS
Share on TwitterShare on LinkedInShare on Facebook
  • LongNosedGoblin is a newly discovered China-aligned Advanced Persistent Threat (APT) group targeting governmental entities in Southeast Asia and Japan, with the goal of cyberespionage.
  • This APT group uses Group Policy to deploy malware across the compromised network, and cloud services (e.g., Microsoft OneDrive and Google Drive) as C&C.
  • One of the group’s tools, NosyHistorian, is used to gather browser history and decide where to deploy further malware, such as the NosyDoor backdoor.
  • NosyDoor is most likely being shared by multiple China-aligned threat actors.

BRATISLAVA, Slovakia, Dec. 18, 2025 (GLOBE NEWSWIRE) — ESET Research has discovered a new China-aligned APT group, LongNosedGoblin, that abuses Group Policy – a mechanism for managing settings and permissions on Windows machines, typically used with Active Directory – to deploy malware and move laterally across the compromised network. It is used to deploy cyberespionage tools across networks of governmental institutions in Southeast Asia and Japan. In 2024, ESET researchers noticed previously undocumented malware in the network of a Southeast Asian governmental entity. However, the group has been active since at least since September 2023. As of this September, ESET began observing renewed activity by the group in the region. It deploys malware across the compromised network, and cloud services (e.g., Microsoft OneDrive and Google Drive) for Command & Control (C&C).

LongNosedGoblin has several tools in its arsenal. NosyHistorian is a C#/.NET application that the group uses to collect browser history from Google Chrome, Microsoft Edge, and Mozilla Firefox, which is then used to determine where to deploy further malware. NosyDoor collects metadata about the victim’s machine, including the machine name, username, the OS version, and the name of the current process, and sends it all to the C&C. It then retrieves and parses task files with commands from the C&C. The commands allow it to exfiltrate files, delete files, and execute shell commands, among other things.

NosyStealer is used to steal browser data from Microsoft Edge and Google Chrome. NosyDownloader executes a chain of obfuscated commands, and downloads and runs a payload in memory. Among other tools used by LongNosedGoblin, ESET identified a C#/.NET keylogger NosyLogger, which seems to be a modified version of the open-source keylogger DuckSharp. Among other tools used by the group is a reverse SOCKS5 proxy, and an argument runner (a tool that runs an application passed as an argument) that was used to run a video recorder, likely FFmpeg, to capture audio and video.

“We later identified another instance of a NosyDoor variant targeting an organization in an EU country, once again employing different techniques, and using the Yandex Disk cloud service as a C&C server. The use of this NosyDoor variant suggests that the malware may be shared among multiple China-aligned threat groups,” says ESET researcher Anton Cherepanov, who investigated LongNosedGoblin with fellow ESET researcher Peter Strýček.

For a more detailed analysis of LongNosedGoblin’s arsenal, check out the latest ESET Research blogpost “LongNosedGoblin tries to sniff out governmental affairs in Southeast Asia and Japan” on WeLiveSecurity.com. Make sure to follow ESET Research on Twitter (today known as X), BlueSky, and Mastodon for the latest news from ESET Research.

About ESET

ESET® provides cutting-edge cybersecurity to prevent attacks before they happen. By combining the power of AI and human expertise, ESET stays ahead of emerging global cyberthreats, both known and unknown— securing businesses, critical infrastructure, and individuals. Whether it’s endpoint, cloud, or mobile protection, our AI-native, cloud-first solutions and services remain highly effective and easy to use. ESET technology includes robust detection and response, ultra-secure encryption, and multifactor authentication. With 24/7 real-time defense and strong local support, we keep users safe and businesses running without interruption. The ever-evolving digital landscape demands a progressive approach to security: ESET is committed to world-class research and powerful threat intelligence, backed by R&D centers and a strong global partner network. For more information, visit http://www.eset.com or follow our social media, podcasts and blogs.

About Web3Wire
Web3Wire – Information, news, press releases, events and research articles about Web3, Metaverse, Blockchain, Artificial Intelligence, Cryptocurrencies, Decentralized Finance, NFTs and Gaming.
Visit Web3Wire for Web3 News and Events, Block3Wire for the latest Blockchain news and Meta3Wire to stay updated with Metaverse News.

ShareTweet1ShareSendShare2
Previous Post

Darius McGrew Gives a Homerun Explanation of Enterprise Telecom for Financial Services

Next Post

GPTBots Presents Its Next-Gen AI DX Solutions for Japanese Enterprises at AI Agent Expo

Related Posts

TGI Update: Signs LOI to Acquire XGC Corp to Build National Carbon Registries Under Paris Agreement Article 6.4

Launching Sovereign Carbon Infrastructure-as-a-Service (SCIaaS) for the Emerging Global Carbon Market MIAMI, FL AND TORONTO, ON / ACCESS Newswire / March 6, 2026 / TGI Solar Power Group, Inc. (OTC:TSPG), a diversified sustainable infrastructure and clean-energy technology holding company, today announced an update to signed a Letter of Intent (LOI)...

Read moreDetails

VIZO Z1 Pro AR Glasses Cross $500K on Kickstarter as Global Backer Interest Accelerates

VIZO, the XR brand incubated by TOZO, has surpassed $500,000 in funding on Kickstarter for its first AR glasses, VIZO Z1 Pro , marking a major milestone as the campaign continues to gain traction. With more than $500,000 USD pledged and 15 days remaining, the project continues to attract strong...

Read moreDetails

HVAC Field Service Management Software, Plumbing Field Service Software & FSM Software: The SaaS Backbone of Modern Field Operations

The​‍​‌‍​‍‌​‍​‌‍​‍‌ service industry is moving toward a fresh digital dawn or phase where the HVAC field service management software https://getfieldy.com/hvac-field-service-management-software is supporting heating and cooling companies with the management of their technicians, service schedules, and equipment maintenance via central cloud platforms. What in the past required multiple, disconnected systems is...

Read moreDetails

Mubite Introduces New Global Trading Platform Integration with Instant Funding Opportunities

Prague, Czech Republic, March 06, 2026 (GLOBE NEWSWIRE) -- Mubite, one of Europe’s fastest-growing crypto prop trading firms, has introduced a new trading infrastructure through its integration with cleo.finance, enabling a streamlined simulated trading environment for traders worldwide. After building a strong presence across Europe and Asia, Mubite continues expanding...

Read moreDetails

UPDATE — ToltIQ Selected by H.I.G. Capital for Firm-Wide Due Diligence Deployment

NEW YORK, March 06, 2026 (GLOBE NEWSWIRE) -- ToltIQ today announced that H.I.G. Capital (“H.I.G.”), a leading global alternative asset management firm with $74 billion in assets under management, with a focus on middle market businesses, has selected ToltIQ as an AI-powered due diligence platform within its expanding suite of...

Read moreDetails

Wearable Devices Ltd. Announces 1-for-3 Reverse Stock Split

Strategic Action Aimed at Regaining Compliance with Nasdaq’s Minimum Bid Price Requirement and Protecting Continued Listing Status YOKNEAM ILLIT, ISRAEL, March 06, 2026 (GLOBE NEWSWIRE) -- Wearable Devices Ltd. (the “Company” or “Wearable Devices”) (Nasdaq: WLDS, WLDSW), a technology growth company specializing in artificial intelligence (“AI")-powered touchless sensing wearables, today...

Read moreDetails

Lantheus Announces FDA Approval of PYLARIFY TruVu™ (piflufolastat F 18) Injection

New formulation of its widely-used U.S. market-leading PSMA PET imaging agent combines thediagnostic performance of PYLARIFY® (piflufolastat F 18) with the potential for larger batches and greater patient availability PYLARIFY TruVu™ is expected to launch in 4Q 2026, with a phased geographic rollout to support a seamless customer transition BEDFORD,...

Read moreDetails

Notification under Chapter 9, Section 10 of the Finnish Securities Market Act: voting rights of FMR LLC in Nokia Corporation exceeded 5%

Nokia CorporationStock Exchange Release6 March 2026 at 22:00 EETNotification under Chapter 9, Section 10 of the Finnish Securities Market Act: voting rights of FMR LLC in Nokia Corporation exceeded 5% Notification under Chapter 9, Section 10 of the Finnish Securities Market Act: voting rights of FMR LLC in Nokia Corporation...

Read moreDetails

Agentova Surpasses 2,000 Active Users and Establishes Itself as the Reference AI Agent Platform for Entrepreneurs in France

Cham, Switzerland, March 06, 2026 (GLOBE NEWSWIRE) -- Agentova, a SaaS platform specializing in AI agents for entrepreneurs and small businesses, announced today that it has surpassed 2,000 active users in France. Designed to replace fragmented automation tools with a unified, intelligent infrastructure, the platform enables entrepreneurs to delegate critical...

Read moreDetails

XShield Security Suite Claims Evaluated: 2026 Consumer Report on All-In-One Antivirus, VPN Privacy Protection, Dark Web Monitoring, and What Consumers Should Verify

New York, NY, March 06, 2026 (GLOBE NEWSWIRE) -- This article contains affiliate links. If a purchase is made through these links, a commission may be earned at no additional cost to the buyer. This article is for informational purposes only and does not constitute professional cybersecurity advice. All product...

Read moreDetails
Web3Wire NFTs - The Web3 Collective

Web3Wire, $W3W Token and .w3w tld Whitepaper

Web3Wire, $W3W Token and .w3w tld Whitepaper

Claim your space in Web3 with .w3w Domain!

Web3Wire

Trending on Web3Wire

  • Top 5 Wallets for Seamless Multi-Chain Trading in 2025

    79 shares
    Share 32 Tweet 20
  • Unifying Blockchain Ecosystems: 2024 Guide to Cross-Chain Interoperability

    154 shares
    Share 62 Tweet 39
  • Understanding Soulbound Tokens SBT Their Definition and Significance

    48 shares
    Share 19 Tweet 12
  • MyCryptoParadise Releases Industry Guide to Help Traders Identify Genuine High-Performance Crypto Signals

    5 shares
    Share 2 Tweet 1
  • Introducing AI-Powered Creativity in CorelDRAW Graphics Suite 2026

    5 shares
    Share 2 Tweet 1
Join our Web3Wire Community!

Our newsletters are only twice a month, reaching around 10000+ Blockchain Companies, 800 Web3 VCs, 600 Blockchain Journalists and Media Houses.


* We wont pass your details on to anyone else and we hate spam as much as you do. By clicking the signup button you agree to our Terms of Use and Privacy Policy.

Web3Wire Podcasts

Upcoming Events

There are currently no events.

Latest on Web3Wire

  • TGI Update: Signs LOI to Acquire XGC Corp to Build National Carbon Registries Under Paris Agreement Article 6.4
  • Breaking the Centralized Black Box: Zoomex and UR Launch the World’s First Multi-Currency Virtual Card with a Focus on “Transparent Ecosystem”
  • VIZO Z1 Pro AR Glasses Cross $500K on Kickstarter as Global Backer Interest Accelerates
  • HVAC Field Service Management Software, Plumbing Field Service Software & FSM Software: The SaaS Backbone of Modern Field Operations
  • Mubite Introduces New Global Trading Platform Integration with Instant Funding Opportunities

RSS Latest on Block3Wire

  • Covo Finance: Revolutionary Crypto Leverage Trading Platform
  • WorldStrides and HEX Announce Partnership to Offer High School and University Students Innovative Courses Designed to Improve Their Outlook in the Digital Age
  • Cathedra Bitcoin Announces Leasing of 2.5-MW Bitcoin Mining Facility
  • Global Web3 Payments Leader, Banxa, Announces Integration With Metis to Usher In Next Wave of Cryptocurrency Users
  • Dexalot Launches First Hybrid DeFi Subnet on Avalanche

RSS Latest on Meta3Wire

  • Thumbtack Honored as a 2023 Transform Awards Winner
  • Accenture Invests in Looking Glass to Accelerate Shift from 2D to 3D
  • MetatronAI.com Unveils Revolutionary AI-Chat Features and Interface Upgrades
  • Purely.website – Disruptive new platform combats rising web hosting costs
  • WEMADE and Metagravity Sign Strategic Alliance MOU to Collaborate on Blockchain Games for the Metaverse
Web3Wire

Web3Wire is your go-to source for the latest insights and updates in Web3, Metaverse, Blockchain, AI, Cryptocurrencies, DeFi, NFTs, and Gaming. We provide comprehensive coverage through news, press releases, event updates, and research articles, keeping you informed about the rapidly evolving digital world.

  • About Web3Wire
  • Founder’s Note
  • Web3Wire NFTs – The Web3 Collective
  • .w3w TLD
  • $W3W Token
  • Web3Wire DAO
  • Event Partners
  • Community Partners
  • Our Media Network
  • Media Kit
  • RSS Feeds
  • Contact Us

Crypto Coins

  • Top 10 Coins
  • Top 50 Coins
  • Top 100 Coins
  • All Coins – Marketcap
  • Crypto Coins Heatmap

Crypto Exchanges

  • Top 10 Exchanges
  • Top 50 Exchanges
  • Top 100 Exchanges
  • All Crypto Exchanges

Crypto Stocks

  • Blockchain Stocks
  • NFT Stocks
  • Metaverse Stocks
  • Artificial Intelligence Stocks

Web3Wire Whitepaper | Tokenomics

Web3 Resources

  • Top Web3 and Crypto Youtube Channels
  • Latest Crypto News
  • Latest DeFi News
  • Latest Web3 News

Blockchain Resources

  • Blockchain and Web3 Resources
  • Decentralized Finance (DeFi) – Research Reports
  • All Crypto Whitepapers

Metaverse Resources

  • AR VR and Metaverse Resources
  • Metaverse Courses
Claim your space in Web3 with .w3w!

The Klyrox Protocol | The Algorithmic Monographs

Top 50 Web3 Blogs and Websites
Web3Wire Podcast on Spotify Web3Wire Podcast on Amazon Music 
Web3Wire - Web3 and Blockchain - News, Events and Press Releases | Product Hunt
Web3Wire on Google News

Media Portfolio: Block3Wire | Meta3Wire

  • Privacy Policy
  • Terms of Use
  • Disclaimer
  • Sitemap
  • For Search Engines
  • Crypto Sitemap
  • Exchanges Sitemap

© 2024 Web3Wire. We strongly recommend our readers to DYOR, before investing in any cryptocurrencies, blockchain projects, or ICOs, particularly those that guarantee profits.

Welcome Back!

Login to your account below

Forgotten Password?

Retrieve your password

Please enter your username or email address to reset your password.

Log In

Add New Playlist

No Result
View All Result
  • Coins
    • Top 10 Cryptocurrencies
    • Top 50 Cryptocurrencies
    • Top 100 Cryptocurrencies
    • All Coins
  • Exchanges
    • Top 10 Cryptocurrency Exchanges
    • Top 50 Cryptocurrency Exchanges
    • Top 100 Cryptocurrency Exchanges
    • All Crypto Exchanges
  • Stocks
    • Blockchain Stocks
    • NFT Stocks
    • Metaverse Stocks
    • Artificial Intelligence Stocks

© 2024 Web3Wire. We strongly recommend our readers to DYOR, before investing in any cryptocurrencies, blockchain projects, or ICOs, particularly those that guarantee profits.

This website uses cookies. By continuing to use this website you are giving consent to cookies being used. Visit our Privacy and Cookie Policy.