IcePeony with the 996 work culture
IcePeony is an unknown attack group. Our research shows that they have been active since at least 2023. They mainly target Asian countries such as India and Vietnam. In the log files we analyzed there were over 200 attempts to attack various government websites in India. They use SQL injection attacks on public web servers. If they find a vulnerability they install a webshell or malware. Ultimately their goal is to steal credentials.