CyberSecurityBoardThreat Intel · CVEs · Products
Attack Groups

APT32

July 31, 2026

[APT32](https://attack.mitre.org/groups/G0050) is a suspected Vietnam-based threat group that has been active since at least 2014. The group has targeted multiple private sector industries as well as foreign governments, dissidents, and journalists with a strong focus on Southeast Asian countries like Vietnam, the Philippines, Laos, and Cambodia. They have extensively used strategic web compromises to compromise victims.(Citation: FireEye APT32 May 2017)(Citation: Volexity OceanLotus Nov 2017)(Citation: ESET OceanLotus)

Aliases: APT32, SeaLotus, OceanLotus, APT-C-00, Canvas Cyclone, BISMUTH

MITRE ATT&CK ID: G0050

View on MITRE ATT&CK