Kaspersky's Global Research and Analysis Team (GReAT) discovered an ongoing cyber espionage campaign targeting government, healthcare and research organisations across Central Asia and Syria. Active since January 2025, the campaign relies on highly customised malware that decrypts its payload only on the specific machine of an intended victim, making automated detection extremely difficult.