i-SOON

Actor Type Commercial Provider
Attributed to Nation China
Associated Intrusion Sets RedAlpha , Earth Krahang , POISON CARP , JACKPOT PANDA , RedHotel , Earth Lusca

According to public reporting, i-SOON is a Chinese cyber security company which develops malware and carries out cyber espionage operations on behalf of Chinese government agencies.

According to leaked documents, the company offers 'APT' services and 'holds contracts with China's Ministry of State Security (MSS) and Ministry of Public Security (MPS) - through each agencies' network of local bureaus'.

Cyber Threat Graph Context

Explore how this cyber threat actor relates to the wider threat graph

i-SOON Threat Reports

Report

Earth Krahang Exploits Intergovernmental Trust to Launch Cross-Government Attacks

This article by researchers at Trend Micro discusses an Advanced Persistent Threat (APT) group they name Earth Krahang who have been observed ...

Report

I-Soon leak: KELA’s insights

This blog post outlines KELA's analysis of the 2024 I-SOON data leak. According to the article, I-Soon had relationships with Chinese governmental ...

Report

Earth Lusca Uses Geopolitical Lure to Target Taiwan Before Elections

Blog post from researchers at Trend Micro discussing Earth Lusca and potential links to Chinese contractor I-Soon. Earth Lusca is a China-linked ...

References