Threat Advisories:

Tropic Trooper Targets Middle East with New Web Shell

Red | Actor Report
Download PDF

Tropic Trooper, a Chinese-speaking APT group active since 2011, has expanded its targets from Asia to include Middle Eastern government entities, especially in human rights. In June 2024, they launched a new campaign involving the China Chopper web shell, exploiting Microsoft Exchange and Adobe ColdFusion vulnerabilities. The attack introduced the Crowdoor malware for network scanning and lateral movement, using DLL side-loading to evade defenses. Their growing sophistication indicates a focus on geopolitical espionage and regional security implications.

What’s new on HivePro

Get through updates and upcoming events, and more directly in your inbox

Cyber Horizons 2025

What Last Year’s Attacks Reveal About Today’s Risks

Watch the Webinar on-demand and get a FREE copy of our Cyber Horizons 2025 report.

Our Speakers
Speaker 1

Prateek Bhajanka Global Field CISO & Former Gartner Analyst Hive Pro Inc.

Speaker 2

Ankit Mani Manager Threat Intel HiveForce Labs

Speaker 3

Sreevani Tonipe Senior Threat Researcher HiveForce Labs