Beating one of the most active APTs in Asia? Allowlists, heuristics, and more

Kaspersky Lab experts have investigated one of the most active APTs (Advanced Persistent Threats) in Asia, operating specifically around the South China Sea area. It was named “Naikon” after the  “nokian” User-Agent substring within an attack components’ code.