Vietnamese Non-Profit Battles 4-Year Malware Attack by OceanLotus Hackers

OceanLotus, a Vietnamese-aligned hacking crew, has been targeting a non-profit supporting Vietnamese human rights for over four years. Their cyber antics include spear-phishing and watering hole campaigns, aiming to steal sensitive info and Chrome cookies. Huntress researchers uncovered these OceanLotus attacks, adding a new chapter to their espionage saga.

Pro Dashboard

Hot Take:

Looks like APT32 is at it again, playing their greatest hits of spear-phishing and backdoor planting. They’ve been rocking the cyber espionage world longer than most bands stick together!

Key Points:

  • Vietnamese human rights non-profit targeted in a multi-year malware campaign.
  • Huntress attributes the attack to APT32 (a.k.a. OceanLotus, Cobalt Kitty, etc.).
  • APT32 has a history of cyber espionage in East-Asian countries since at least 2012.
  • Attack vectors include spear-phishing and watering hole campaigns.
  • South Korean users are also being targeted in concurrent campaigns.

Membership Required

 You must be a member to access this content.

View Membership Levels
Already a member? Log in here
The Nimble Nerd
Confessional Booth of Our Digital Sins

Okay, deep breath, let's get this over with. In the grand act of digital self-sabotage, we've littered this site with cookies. Yep, we did that. Why? So your highness can have a 'premium' experience or whatever. These traitorous cookies hide in your browser, eagerly waiting to welcome you back like a guilty dog that's just chewed your favorite shoe. And, if that's not enough, they also tattle on which parts of our sad little corner of the web you obsess over. Feels dirty, doesn't it?