← Back to Feed
Pawn Storm Campaign Deploys PRISMEX, Targets Government and Critical Infrastructure Entities
March 26, 2026 · Trend Micro · Severity: CRITICAL
This blog discusses the steganography, cloud abuse, and email-based backdoors used against the Ukrainian defense supply chain in the latest Pawn Storm campaign that TrendAI™ Research observed and analyzed.
Key Takeaways
- Pawn Storm's latest campaign deploys the PRISMEX backdoor against the Ukrainian defense supply chain, using steganography, cloud abuse, and email-based backdoors.
- TrendAI Research observed the campaign targeting government and critical infrastructure entities connected to Ukrainian defense.
- Defenders should monitor for steganographic payloads and email-based backdoors associated with the Pawn Storm campaign.