HenBox

πŸ”΄ High
Also known as: HenBox

This threat actor targets Uighursβ€”a minority ethnic group located primarily in northwestern Chinaβ€”and devices from Chinese mobile phone manufacturer Xiaomi, for espionage purposes.

🌍 Country China
⚑ Risk Level High
🎯 Incident Type Espionage
Civil society

Introduction

This threat actor targets Uighursβ€”a minority ethnic group located primarily in northwestern Chinaβ€”and devices from Chinese mobile phone manufacturer Xiaomi, for espionage purposes.

Activities and Tactics

Targeted Sectors: Civil society

Country of Origin: πŸ‡¨πŸ‡³ China

Risk Level: High

Incident Type: Espionage

Suspected Victims: Uighurs

Notable Campaigns

Information pending cataloguing.

Tactics, Techniques, and Procedures (TTPs)

Information pending cataloguing.

Notable Indicators of Compromise (IOCs)

No curated IOCs are currently published for this actor. This section will be updated when stable, attributable indicators are available.

Malware and Tools

  • MobileOrder
  • China Chopper

Attribution and Evidence

Country of Origin: China Additional attribution information pending cataloguing.

References

References pending cataloguing.