Talan.tech
LOWData BreachACTIVE

The Hacker News: Tropic Trooper Uses Trojanized SumatraPDF and GitHub to Deploy AdaptixC2

April 24, 2026

Incident Summary

A campaign targeting Chinese-speaking users distributed a trojanized version of the SumatraPDF application to install the AdaptixC2 post-exploitation agent. The activity used GitHub as part of its infrastructure and leveraged VS Code tunnels to enable remote access to compromised systems. The incident affects end users who downloaded and ran the trojanized software, not necessarily GitHub accounts directly. Limited public details are available on scope, specific repositories involved, or any confirmed data exposure.

Incident Details

Type
Data Breach
Severity
LOW
Status
ACTIVE
Date Occurred
April 24, 2026
Tags
#hackernews#security#breach