A Chinese cyber-espionage group named "FamousSparrow" is reportedly targeting Central and South American governments and industries using a new backdoor tool called "SparroWocky." This group, linked to past cyber campaigns, has shifted focus since mid-2025 to directly monitor local governmental interactions amid increased U.S.-China geopolitical tensions.
The modular design of SparroWocky allows it to execute sophisticated evasion tactics, including in-memory execution and stack spoofing, making detection more challenging. Attacks have been observed against government bodies in several Latin American countries, indicating a concentrated effort to gather intelligence on U.S. pressures in the region related to Chinese investments.