ETDA สำนักงานพัฒนาธุรกรรมทางอิเล็กทรอนิกส์
Electronic Transactions Development Agency
Report
Search
Home > List all groups > Earth Lamia

Threat Group Cards: A Threat Actor Encyclopedia

Permanent link APT group: Earth Lamia

NamesEarth Lamia (Trend Micro)
CountryChina China
MotivationInformation theft and espionage
First seen2023
Description(Trend Micro) Trend Research has identified Earth Lamia as an APT threat actor that exploits vulnerabilities in web applications to gain access to organizations, using various techniques for data exfiltration.

Earth Lamia develops and customizes hacking tools to evade detection, such as PULSEPACK and BypassBoss.

Earth Lamia has primarily targeted organizations in Brazil, India, and Southeast Asia since 2023. Initially focused on financial services, the group shifted to logistics and online retail, most recently focusing on IT companies, universities, and government organizations.
ObservedSectors: Education, Financial, Government, IT, Retail, Shipping and Logistics.
Countries: Brazil, India, Indonesia, Malaysia, Philippines, Thailand, Vietnam.
Tools usedBypassBoss, PULSEPACK.
Information<https://www.trendmicro.com/en_us/research/25/e/earth-lamia.html>

Last change to this card: 27 June 2025

Download this actor card in PDF or JSON format

Digital Service Security Center
Electronic Transactions Development Agency

Follow us on

Facebook Twitter

Report incidents

Telephone +66 (0)2-123-1227
E-mail [email protected]