From HealthKick to GOVERSHELL The Evolution of UTA0388s Espionage Malware
Posted on October 9, 2025 • 1 min read • 59 wordsA China-aligned threat actor codenamed UTA0388 has been attributed to a series of spear-phishing campaigns targeting North America, Asia, and Europe that are designed to deliver a Go-based implant known as GOVERSHELL. The initially observed campaigns were tailored to the targets, and the messages purported to be sent by senior researchers
A China-aligned threat actor codenamed UTA0388 has been attributed to a series of spear-phishing campaigns targeting North America, Asia, and Europe that are designed to deliver a Go-based implant known as GOVERSHELL. “The initially observed campaigns were tailored to the targets, and the messages purported to be sent by senior researchers and analysts from legitimate-sounding, completely