Check Point has observed spearphishing campaigns targeting several defense research institutes belonging to the Russian state-owned defense conglomerate Rostec Corporation. Check Point believes "with high confidence that the campaign has been carried out by an experienced and sophisticated Chinese nation-state APT": "This campaign is a continuation of what CPR believes to be a long-running espionage operation against Russian-related entities that has been in operation since at least June 2021. The operation may still be ongoing, as the most recent activity was observed in April 2022.... This activity was attributed with high confidence to a Chinese threat actor, with possible connections...