Vendor
Alibaba Group
- First Reported
- Jul 28, 2026
- Latest Reported
- Sep 22, 2026
Reported Context (3)
- of the two, is comprised of domestic Chinese AI providers: ByteDance Doubao/Volcano Engine, DeepSeek, Alibaba Qwen (DashScope), Zhipu and MiniMax. One possibility is that the routing of Chinese client traffic to Team Cymru Finds LLM Relay Gateways Linked to Regional-Access Abuse and Possible Model Distillation
- that Luciferus is built on Qwen, which is a family of large language models (LLMs) developed by Alibaba. Qwen provides underlying AI capabilities, including natural language understanding and generation, for a Uncensored Luciferus AI Service Advertised on Underground Forum
- for registration on npm, and is most likely reserved for security reasons or already registered by Alibaba Group. Code references to packages from this scope can be found across several GitHub repositories. The @ali Distributed npm Packages Deliver Cross-Platform RAT Targeting Alibaba Developers
CVE (8)
Malware (3)
MITRE ATT&CK (22)
Vendors (10)
Products (28)
Tools (7)
Industries (10)
Countries (6)
Note: Related entities, including threat actors, malware, CVEs, MITRE ATT&CK techniques, vendors, products, tools, countries, and industries, are shown when they appear in the same reporting. Their presence does not necessarily mean they were targeted, compromised, vulnerable, responsible for the activity, or directly involved in the incident.