Securonix Threat Research has discovered a significant attack, STARK#VORTEX, coming from the group UAC-0154 and primarily targeting Ukraine’s military. The group uses a novel approach to deliver the MerlinAgent malware through files downloaded from untrusted sources. The malware deceptionally appears as a Microsoft Help file containing malicious JavaScript and binary payload. Enhanced logging, avoiding downloads from untrusted sources, and monitoring directories for suspicious activity is suggested for mitigation.

Chinese Hackers UNC5221 Steal U.S. Trade Secrets Using BRICKSTORM Malware – WebProNews
Chinese Hackers UNC5221 Steal U.S. Trade Secrets Using BRICKSTORM Malware WebProNews