2025-12-08: OceanLotus (APT32) Targets China's Xinchuang ICT Systems with Sophisticated Attacks
Category: apt | Severity: critical
The APT group OceanLotus, linked to Vietnam, is conducting advanced attacks against China's Xinchuang ICT innovation systems. The campaign leverages multiple lure formats, exploits CVE-2023-52076 in Atril Document Viewer, and includes supply chain attacks on internal terminal management software. Attack vectors include desktop files, PDFs, JARs, EPUBs, and malicious updates.