Ted Lee
Ted Lee
Threat Researcher
Trend Micro

Ted Lee is a threat intelligence researcher with multiple years experience in cyber security industry. Currently, he is committed to APAC-based APT (Advanced Persistence Attack) research. Expertise in cyber threat hunting and reverse engineering.

SPEECH
5/16 (Thu.) 11:00 - 11:30 7F 701B Threat Research Forum
Earth Estries Targets Government, Tech For Cyberespionage​

In 2023, a new cyberespionage campaign by a group we named Earth Estries was identified, indicating activity since at least 2020. Notably, similarities emerged between Earth Estries' tactics and those of the advanced persistent threat (APT) group, FamousSparrow. The tools and techniques used suggest the involvement of highly skilled threat actors wielding advanced resources, employing numerous backdoors and hacking tools to great effect, targeting organizations in the government and technology industries based in the Philippines, Taiwan, Malaysia, South Africa, Germany, and the US. In this topic, we discuss our detailed findings and technical analysis, including some backgrounds about Earth Estries and their motivations, attack methods and tools, C&C infrastructures, victimology and attribution.