Hunter Strategy
  • Trending Topics
  • Threat Intelligence
  • Contact Us
  • Hunter Website
Sign in Subscribe

Dragon Breath

Dragon Breath (APT-Q-27, Golden Eye Dog) is a China-nexus threat actor targeting Chinese-speaking users since 2020, primarily in online gambling and gaming sectors, using trojanized installers and the RONINGLOADER chain to deploy modified Gh0st RAT.

Trending Topics
Torg Grabber Infostealer

Trending Topics

Torg Grabber infostealer targets 850+ browser extensions and crypto wallets. Silver Fox shifts from RATs to a WhatsApp-themed Python stealer. Dragon Breath (APT-Q-27) deploys a Farfli backdoor via fake screenshot links to Web3 support teams.
Read more
William Elchert and Antonio Rivera
Trending Topics
ISPsystem

Trending Topics

Bulletproof hosts abuse ISPsystem VM templates for ransomware infrastructure. Dragon Breath (APT-Q-27) deploys a signed .PIF dropper for fileless backdoor access via Zendesk tickets. Screensaver files silently install RMM agents for remote access.
Read more
William Elchert and Antonio Rivera
Trending Topics
FortiWeb

Trending Topics

FortiWeb zero-day CVE-2025-64446 lets attackers create admin accounts. Charming Kitten (APT42, Mint Sandstorm) runs SpearSpecter against senior officials via WhatsApp rapport-building. Dragon Breath (APT-Q-27) deploys RONINGLOADER to disable AV tools.
Read more
William Elchert and Antonio Rivera
Hunter Strategy © 2026
Powered by Ghost