China-based MirrorFace APT group targeting Japanese Political Entities

Threat Advisories

China-based MirrorFace APT group targeting Japanese Political Entities

Threat Level
Actor Report

For a detailed threat advisory, download the pdf file here

Summary

A Chinese-speaking APT group named MirrorFace has started its attacks by spearphishing campaign with LODEINFO backdoor, targeting Japanese political entities since June 29, 2022 and this campaign operation is named as LiberalFace. The main motive of MirrorFace threat actor group is the exfiltration of data and espionage.