Chinese Cyber Espionage Continues Despite COVID-19

Chinese Cyber Espionage Continues Despite COVID-19

Cybercrime , Cyberwarfare / Nation-State Attacks , Fraud Management & Cybercrime

FireEye Finds APT41 Conducting a Global Campaign Akshaya Asokan (asokan_akshaya) • March 26, 2020    

Despite the global COVID-19 pandemic, which started in China, Chinese cyber espionage campaigns are continuing, with a new campaign from one advanced persistent threat group targeting at least 75 enterprises in 20 countries, according to the security firm FireEye.

See Also: 2020 Report: Breach Exposure of Fortune 1000 Employees - by Sector

The new campaign, which started in January and continued through at least mid-March, is the work of the group known as APT41, which is taking advantage of vulnerabilities in software and devices manufactured by Cisco, Citrix and Zoho, FireEye says in a new report.

Although the report does not describe the goal of this cyber espionage campaign, earlier investigations determined that APT41 had focused on stealing intellectual property and corporate data. In the current campaign, the APT group attempted to plant backdoors in organizations' networks to enable the potential installation of more sophisticated malware later, the report notes.

The campaign has targeted organizations in the U.S., U.K., Australia, Canada, Denmark, Finland, France, India, Italy, Japan, Malaysia, Mexico, Philippines, Poland, Qatar, Saudi Arabia, Singapore, Sweden, Switzerland and ..

Support the originator by clicking the read the rest link below.