RedEcho — APT Profile
RedEcho is a People’s Republic of China-related threat actor associated with long-running intrusions in Indian critical infrastructure entities. RedEcho overlaps with various other PRC-linked threat groups, such as APT41, and is linked to ShadowPad malware use through shared infrastructure.Description reproduced from MITRE ATT&CK. © The MITRE Corporation, reproduced and distributed with permission.
Tools & malware
- ShadowPad Backdoor
Vendor research
- China-Linked Group RedEcho Targets the Indian Power Sector Amid Heightened Border Tensions RecordedFuture
- Continued Targeting of Indian Power Grid Assets by Chinese State-Sponsored Activity Group RecordedFuture
Countries linked to this actor
- India targets