APT32
[APT32](https://attack.mitre.org/groups/G0050) is a suspected Vietnam-based threat group that has been active since at least 2014. The group has targeted multiple private sector…
[APT32](https://attack.mitre.org/groups/G0050) is a suspected Vietnam-based threat group that has been active since at least 2014. The group has targeted multiple private sector…
ESET has uncovered two campaigns by the Vietnam-aligned threat actor OceanLotus (APT32) targeting domestic entities and stock investors with the SPECTRALVIPER backdoor.…
OceanLotus, also known as APT32, is a Vietnam-aligned advanced persistent threat group active since 2012. It has historically targeted foreign entities, including…
SPECTRALVIPER is a backdoor used by OceanLotus, first documented by Elastic Security Labs in June 2023. It is deployed via DLL side-loading,…
CyberOne Group, also known as CyberOne Security and Hành Tinh Company Limited, was linked by Meta to OceanLotus activities in 2020. The…
Microsoft SQL Server was potentially exploited via remote code execution vulnerabilities as an initial access vector in OceanLotus's campaign against a Vietnamese…
ZiChatBot is a previously unknown malware family discovered by Kaspersky on PyPI, delivered via malicious packages and linked to OceanLotus through dropper…