Apt

Earth Alux

Earth Alux

Country: China

First Observed: 2025

Most Recent Activity: 2025


Overview

Earth Alux is a China-linked cyber espionage group observed targeting government, industrial, and technology sectors. The group deploys modular toolkits and web shells, and has demonstrated fileless execution techniques using legitimate Windows processes.


MITRE ATT&CK Profile


Known Malware / Tooling

  • Godzilla
  • VARGEIT
  • COBEACON

Common Targets

  • Government
  • Technology
  • Industrial organizations

Research & References

This post is licensed under CC BY 4.0 by the author.