Chinese Group UAT-10147 Uses AI to Scale Cyber Attacks

Chinese Group UAT-10147 Uses AI to Scale Cyber Attacks

UAT-10147’s methodology focuses on high-volume automation rather than zero-day vulnerabilities, using AI to scale attacks against thousands of vulnerable systems simultaneously. This strategic shift in 2026 highlights how threat actors prioritize operational efficiency over the discovery of novel exploits. By using artificial intelligence to manage large-scale campaigns, the group has successfully automated reconnaissance and exploitation phases that once required significant human oversight. This approach allows them to target an expansive array of internet-facing systems across sectors like government and technology. The primary danger stems from the industrialization of cybercrime, where AI agents identify and compromise thousands of targets in the time it previously took a human to breach one network. As these automated workflows become more sophisticated, the distinction between simple botnets and intelligent threat actors continues to blur, creating a highly volatile environment for the global infrastructure.

Operational Innovation: The Transition to AI-Driven Playbooks

The operational core of UAT-10147 involves the deployment of agent-like artificial intelligence that functions as a comprehensive assistant. Unlike traditional scripts that follow a linear path, these AI agents adapt to specific system responses and troubleshoot failures in real-time. This capability is evidenced by the discovery of target lists containing approximately 170,000 URLs, suggesting a reach that manual operations could never achieve. The group focuses on critical sectors such as education and media, leveraging AI to manage the high volume of interactions required to maintain such an expansive campaign. By shifting from manual exploitation to automated playbook execution, UAT-10147 has drastically reduced the window of time between initial scanning and full system compromise. This methodology ensures that any delay in security patching is immediately exploited by an automated system that constantly probes for entry points while operating with high speed.

Furthermore, the integration of AI has led to a significant democratization of complex cyber intrusions, allowing threat actors with varying technical backgrounds to execute high-level attacks. By using AI to guide the exploitation of intricate vulnerabilities, such as ASP.NET ViewState deserialization, the group provides a structured route for its operators to follow. The AI analyzes stolen configuration keys and assists in the creation of customized payloads designed to evade modern detection systems. This development suggests that the most pressing threat to global cybersecurity is not the invention of new malware families, but the increased efficiency made possible by AI-assisted operational frameworks. As these tools become more accessible, the barrier to entry for conducting sophisticated state-level or corporate espionage continues to lower. The result is a surge in attack frequency that can overwhelm security operations centers that still rely on heavy manual triage.

Technical Implementation: Exploiting Windows and Linux Environments

The technical execution of these attacks demonstrates proficiency across multiple operating systems, beginning with the exploitation of well-known remote-code-execution flaws. UAT-10147 has been observed targeting vulnerabilities in platforms like Zimbra, AjaxPro, and Telerik to gain an initial foothold. On Windows-based systems, the group frequently installs a specialized malicious module known as BadIIS within the Internet Information Services environment. This module is primarily utilized for search-result manipulation and maintaining a persistent presence within the victim architecture without alerting administrators. To ensure the longevity of their access, the attackers employ AI-generated scripts to elevate user privileges and systematically weaken endpoint protection software. They specifically target folders and processes associated with IIS to prevent security tools from detecting their implants. This calculated approach to post-exploitation highlights a deep understanding of configurations.

On Linux platforms, the group follows a similar automated path by utilizing web shells for initial access and then deploying local privilege-escalation exploits. One frequently observed tactic involves the use of the Dirty Pipe vulnerability, which allows the attackers to escalate their permissions from a standard user to root level. Once full control is established, the automated workflow proceeds to install backdoors and additional implants to secure the environment for future operations. The role of AI is particularly visible during this phase through the generation of specialized scripts designed to map out server structures and identify writable directories. These tools allow the group to move rapidly through a compromised network, identifying high-value data and sensitive configurations with minimal human intervention. By automating the discovery of internal assets, UAT-10147 can maintain a high tempo of operations that outpaces the ability of many defensive teams to contain a breach.

Artificial Intelligence Roles: The Lifecycle of Modern Intrusions

The infrastructure used by UAT-10147 reveals that artificial intelligence is deeply embedded across every stage of the attack lifecycle, serving as a diagnostic engine. When an initial exploit attempt fails, the AI agents are programmed to analyze error logs and suggest alternative techniques to bypass the specific obstacles encountered. Researchers identified several AI-generated scripts that highlight this level of automation, including tools dedicated to finding vulnerable paths and deploying malicious implants. For instance, scripts like check_paths.py are used to automate the reconnaissance of server directories, while other tools handle the retrieval and execution of secondary malware payloads. This diagnostic capability ensures that the attack campaign remains resilient even when faced with diverse and well-configured security environments. By removing the need for a human to troubleshoot failed connections, the group can maintain a relentless pace of intrusions across their target lists.

Moreover, the group leverages cloud configuration services to gather detailed information about their victims while blending their activities with legitimate web traffic. By directing stolen data and command-and-control communications through common callback endpoints, such as Webhook.site, the attackers effectively hide their presence from network monitoring tools. This strategy of using routine-looking administrative traffic makes it difficult for defenders to distinguish between a malicious exfiltration event and a standard cloud service interaction. The synthesis of public exploits with AI automation creates a highly efficient model that can be repeated across thousands of targets with minimal overhead. This process bridges the gap between identifying a minor configuration weakness and converting it into a profitable data breach. The ability of AI to curate victim data in real-time further enhances the group’s ability to prioritize targets, ensuring their resources focus on key systems.

Proactive Security: Defending Against High-Speed Cyber Operations

Defending against the current wave of AI-driven threats requires organizations to view their public-facing web servers as high-priority strategic assets. The first line of defense remains the implementation of rapid patching cycles and inventory management to ensure no internet-facing system is left unaccounted for. Maintaining visibility over all assets is critical, as automated attackers like UAT-10147 specifically scan for older vulnerabilities that have been forgotten by IT departments. Furthermore, organizations must prioritize the integrity of their server configurations, particularly regarding the protection of ASP.NET MachineKey material. Securing these keys is vital to preventing the deserialization attacks that the group frequently employs to gain initial code execution. Regularly auditing these configurations for unauthorized changes can help identify potential breaches before the attackers can establish a permanent foothold or begin the process of escalating user privileges.

Security teams found that traditional signature-based detection was often insufficient against the dynamic nature of AI-generated scripts. Consequently, the focus shifted toward behavioral monitoring and the analysis of server error logs to identify signs of automated probing. Unexpected server errors were no longer viewed as technical noise but were recognized as trial-and-error phases of AI agents testing various exploit payloads. To move forward, organizations should implement automated response protocols that match the speed of AI-driven offense, such as instantly isolating systems that exhibit unusual scheduled tasks or unauthorized outbound connections. Strengthening digital defenses in 2026 involves adopting a proactive posture where AI is used by defenders to monitor for the same patterns utilized by attackers. By matching the velocity of the adversary through intelligent automation, companies can protect their infrastructure from becoming the next target of scaled operations.

Subscribe to our weekly news digest.

Join now and become a part of our fast-growing community.

Invalid Email Address
Thanks for Subscribing!
We'll be sending you our best soon!
Something went wrong, please try again later