Security News > 2020 > March > China-linked APT Hackers Launch Coronavirus-Themed Attacks

Even a long-standing China-based APT has begun to use the threat in a new spear-phishing campaign.
Researchers from Check Point Research have found a spear-phishing campaign targeting the Mongolian public sector and apparently emanating from China.
The campaign has similarities to earlier campaigns - such as one targeting the Belarus government and dropping the ByeBye backdoor in 2017.
Although initially used exclusively by these Chinese groups, Anomali has since the summer of 2019 observed it being used in multiple commodity campaigns.
Check Point does not attribute this or the earlier campaigns to any known and named APT group.
News URL
Related news
- China-Linked Hackers Exploit SAP and SQL Server Flaws in Attacks Across Asia and Brazil (source)
- Infosec experts fear China could retaliate against tariffs with a Typhoon attack (source)
- Russian hackers attack Western military mission using malicious drive (source)
- China names alleged US snoops over Asian Winter Games attacks (source)
- Hackers Abuse Russian Bulletproof Host Proton66 for Global Attacks and Malware Delivery (source)
- Hackers abuse Zoom remote control feature for crypto-theft attacks (source)
- DPRK Hackers Steal $137M from TRON Users in Single-Day Phishing Attack (source)
- Lazarus hackers breach six companies in watering hole attacks (source)
- China is using AI to sharpen every link in its attack chain, FBI warns (source)
- Chinese Hackers Abuse IPv6 SLAAC for AitM Attacks via Spellbinder Lateral Movement Tool (source)