Bitdefender researchers have unmasked a near year-long espionage operation against six Central Asian governments that used artificial intelligence to accelerate development of five previously undocumented remote access tools.

Intelligence Lead

A suspected China-nexus threat cluster designated SilkParasite has been conducting sustained cyberespionage against government bodies across Central Asia since late 2025, deploying seven distinct remote access trojans, five of which had never been documented, against ministries in Uzbekistan, Turkmenistan, Kyrgyzstan, Tajikistan, Kazakhstan, and Georgia. The campaign is assessed as a case study in how state-aligned intrusion teams are folding AI-assisted development into professional tradecraft rather than replacing it, and it tracks with a broader strategic pattern of Beijing expanding intelligence collection into a region where Russian influence is receding.

Situation Report

Cybersecurity firm Bitdefender reported that its investigation began with a suspicious infection at a Central Asian government economic institution and expanded, after months of forensic work, into the identification of seven malware families operating under a single intrusion set. The confirmed RATs include DriveSilkRAT, CookiETagRAT, NomadRAT, GoginRAT, and NodeEdgeRAT, spanning four programming languages including .NET, C++, Go, and JavaScript. DriveSilkRAT was the most widely deployed, with roughly 65 confirmed infections, most located in the wider Asia region.

Initial access was reportedly achieved through password-protected RAR archives containing malicious Microsoft Office documents delivered via spear-phishing, with the archive password supplied in the email body to defeat gateway scanning. Opening the lure document triggers a macro that initiates DLL sideloading, a technique in which a legitimately signed binary is paired with a malicious library placed to be loaded in its stead. Bitdefender noted the macro checks specifically for Kaspersky antivirus processes before execution, a detail assessed to reflect the security software's prevalence across the targeted region.

Attribution to China rests on multiple technical indicators rather than a single confirmed link. Analysts tied one campaign component to BLOODALCHEMY, a descendant of Deed RAT and ShadowPad, malware families in wide use among Chinese state-aligned operators, alongside an updated variant of SpiceRAT associated with the China-linked cluster SneakyChef. Bitdefender also identified command infrastructure tied to Chinese telecommunications providers, though it characterized the overall China-nexus assessment as medium confidence.

The lure documents themselves were regionally tailored, with several crafted to impersonate specific government ministries and one additional document, recovered from a public malware-sharing platform, addressed to a Georgian government entity, extending the campaign's apparent footprint beyond the five core Central Asian states.

Background & Context

SilkParasite is the third significant threat cluster identified operating against Central Asian governments in recent years, following the previously tracked UAC-0063 and FamousSparrow operations, and forms part of a documented pattern of Chinese state-aligned intrusion activity that has also struck targets in Europe, South Asia, and the South Caucasus over the past year. Bitdefender's broader assessment situates the campaign within a geopolitical shift: as Moscow's traditional security and economic dominance over the Central Asian republics has weakened, Beijing has moved to fill the resulting vacuum economically, a shift the firm assesses is driving increased Chinese intelligence collection against the economic ministries and government bodies managing that transition.

The malware architecture itself reflects mature, plugin-based tradecraft designed to minimize detection footprint, favoring in-memory execution and command-and-control channels routed through legitimate cloud services such as Google Drive, which blend into ordinary enterprise network traffic and evade volume-based detection systems.

Analysis & Assessment

The most consequential element of SilkParasite is not its targeting but its tradecraft signature. Bitdefender's analysis draws a firm distinction between AI-generated malware, which tends to be sloppy and easily flagged, and AI-assisted development, in which experienced human operators use AI tools to accelerate otherwise expert engineering while leaving behind subtle tells, such as unremoved placeholder values and duplicated architecture across languages. This assessment, if it holds across further cases, indicates state-aligned espionage units are integrating AI into professional workflows selectively rather than wholesale, adopting it where it improves speed without degrading operational security.

This case lands one day after the National Security Agency issued an unrelated warning about threat actors using AI-generated exploit scripts against critical industrial technology, and one week after a separate claim of an automated multi-agent AI framework used to compromise Asian government targets. Taken together, these three developments in a single fortnight suggest the intelligence community is now tracking a measurable, rather than merely anticipated, shift in how AI tooling is being absorbed into both cybercriminal and state-sponsored offensive operations.

Strategically, the targeting pattern reinforces an assessment that Chinese intelligence services are treating Central Asia's economic administration as a priority collection target, consistent with Beijing's Belt and Road interests and its broader competition with Moscow for regional influence. Absent public attribution from a national intelligence service, formal diplomatic consequences are unlikely in the near term, and the operation should be expected to continue with updated tooling once current indicators are broadly published and defended against.