Operation Dragon Weave: Uncovering a China-Linked Campaign Targeting Czech Republic and Taiwan Using Azure Cloud C2
June 1, 2026, 9:51 a.m.
Description
A sophisticated cyber-espionage campaign attributed to China-linked actors targets officials and citizens in Czech Republic and Taiwan through spearphishing attacks. The operation deploys malicious ZIP archives containing dual infection paths that ultimately deliver AZUREVEIL, an Adaptix C2 agent. The campaign uniquely leverages Microsoft Azure Blob Storage as a dead-drop command-and-control channel, bypassing traditional C2 infrastructure. A multi-stage infection chain employs RUSTCLOAK, a Rust-based loader implementing triple-layer encryption using modified RC4, Base64, and SM4-CBC algorithms. The final payload supports 36 post-exploitation commands including Beacon Object File execution in memory, file system manipulation, process control, network pivoting, and data exfiltration. Lure documents impersonate official communications from Taiwanese research institutions and Czech Social Security Administration, demonstrating targeted social engineering tailored to each region.
Tags
Date
- Created: May 29, 2026, 3:12 p.m.
- Published: May 29, 2026, 3:12 p.m.
- Modified: June 1, 2026, 9:51 a.m.
Indicators
- 823d5969db3f3b72ebbdce1b78752717ea849884a0fb40d86146416c38e128de
- 02542a49b3bd6bd2795afb67840acb4557b17e017f7503dd03ebe3aeeb28720e
- 8ae7c82a3e4f742777e590b25a1c563d19bd9bcba2a387d004aae72c4b2828f9
- 047687548605734348792e2a9d771b6cba42facd0d0d7d44d778290a25848574
- 24aa4e780ccd66cef13da9ef98c32954105cf2a32ec643efab0ba1aa2d6352f4
- 1c56228cbd1bdebb9e5ea55c2749150fee06c865ede4a3754e8bd6843e51d2d4
- 783661d0f7edb338d2d50be087764d82dbbc9ee7989ddc57db1801e4ec9045b0
- 61f7d9cd2d8ce7df950639b23ce90085b300b0c6dd0d8d934bba8fdecb670f15
- 5ed14c2b7f7433a1a72dd6b668413f935a217ba10b69d89b774a82990fa12fe1
- 096372d19b4787e989f44e04c5ecc29885aa927c34ae8666628d6c0eb20bb447
- 080ab9bc2893ba7bad354551604a667af40ed2ae2d042d2323c2bd9ad3122192
- a4e9f9919d62589b57cfa08c9ccb89e386b09f683271373413cd8e8c8c7d1c5a
Additional Informations
- Finance
- Education
- Technology
- Government
- Taiwan
- Czechia