Skip to content
Auto-CTI
Back to all actors

UAT-10147

Unknown Active
Mentions
3
First seen
20 Aug 2026
Last seen
20 Aug 2026

Relevant to you · Relevant

Threat focus:
industrial / ot espionage
Sector / region:
Manufacturing

Origin

Unattributed

Profile

UAT-10147 is a Chinese-speaking threat actor that integrates agentic AI into post-compromise operations. The actor deploys SPECTRE, a cross-platform implant with Linux rootkit and BYOVD capabilities. The headlines do not specify targeted sectors, regions, or countries.

Affected vendors

MicrosoftLinuxTelerik

Associated malware / tools

SPECTRE

Activity (8 weeks)

31
32
33
34
35
36
37
38

Recent activity

ESC