SloppyLemming Targets Pakistan and Bangladesh Governments Using Dual Malware Chains

Mar 3, 2026

The threat activity cluster known as SloppyLemming has been attributed to a fresh set of attacks targeting government entities and critical infrastructure operators in Pakistan and Bangladesh.
The activity, per Arctic Wolf, took place between January 2025 and January 2026. It involves the use of two distinct attack chains to deliver malware families tracked as BurrowShell and a Rust-based

Get Free Report & Network Analysis

Please check your email for the free report.