started · updated
SilverFox group uses AI to accelerate cyberattacks in Asia-Pacific
Cybersecurity researchers from Kaspersky’s Global Research and Analysis Team (GReAT) have reported a surge in AI-driven cyber threats across the Asia-Pacific region. The SilverFox Advanced Persistent Threat (APT) group has emerged as a highly active actor, utilizing artificial intelligence to execute faster, cheaper, and more difficult-to-detect attacks.
One primary tactic involves the distribution of fraudulent AI applications, such as fake versions of Anthropic’s Claude assistant, targeting Windows, macOS, and Linux users to infiltrate corporate networks. Other sophisticated AI-powered tools identified include JADEPUFFER, a ransomware agent capable of launching autonomous attacks in 31 seconds, ChatGPhish, which uses prompt injection to hide malicious instructions, and VoidLink, a cloud-based malware framework developed almost entirely by AI.
Geographically, China is the most targeted nation, accounting for 90% of attacks, followed by Myanmar, Cambodia, and Singapore. The manufacturing sector is the most frequent target, representing over 30% of incidents, with the IT, public services, healthcare, and finance sectors also facing significant risks.