Threat Actor

KongTuke

Properties

summary
KongTuke was linked to the deployment of a new stealthy backdoor named Mistic in suspected financially motivated attacks against multiple organizations across several sectors since April 2026.
first_seen
2026-06-29T04:00:25.458760+00:00
last_seen
2026-06-29T04:00:25.458760+00:00
created_at
2026-06-29T04:00:25.458760+00:00
mention_count
1
evidence_url
https://thehackernews.com/2026/06/new-mistic-backdoor-linked-to-kongtuke.html
target
Insurance, education, IT, and professional services sectors
provenance
news-scan
suspected_origin
unknown
scan_confidence
0.6
status
pending

Explore this actor's full graph with Ninja Signal

KongTuke — Threat Actor Profile — Ninja Signal | Ninja Signal