ESET has uncovered two campaigns by the Vietnam-aligned threat actor OceanLotus (APT32) targeting domestic entities and stock investors with the SPECTRALVIPER backdoor.…
OceanLotus, also known as APT32, is a Vietnam-aligned advanced persistent threat group active since 2012. It has historically targeted foreign entities, including…
Microsoft SQL Server was potentially exploited via remote code execution vulnerabilities as an initial access vector in OceanLotus's campaign against a Vietnamese…
Microsoft SQL ServerOceanLotusremote code execution
ZiChatBot is a previously unknown malware family discovered by Kaspersky on PyPI, delivered via malicious packages and linked to OceanLotus through dropper…
[APT32](https://attack.mitre.org/groups/G0050) is a suspected Vietnam-based threat group that has been active since at least 2014. The group has targeted multiple private sector…