home.social

#oceanlotus — Public Fediverse posts

Live and recent posts from across the Fediverse tagged #oceanlotus, aggregated by home.social.

  1. OceanLotus Exploits PyPI to Deliver ZiChatBot Malware

    Kaspersky's analysis uncovered a sneaky malware attack on PyPI, where OceanLotus hackers uploaded fake packages that looked like harmless libraries, tricking users into installing the ZiChatBot malware. The malicious packages, uploaded in July 2025, masqueraded as legitimate tools like uuid32-utils, colorinal, and termncolor.

    osintsights.com/oceanlotus-exp

    #Oceanlotus #Pypi #ZichatbotMalware #MalwareOperations #EmergingThreats

  2. via: @campuscodi

    QiAnXin published a report on the recent attacks of #OceanLotus (#APT32) that targeted Chinese organizations throughout 2021.

    The group allegedly used 3 zero-day #vulns:

    +1 in an unnamed antivirus product
    +2 in an unnamed workstation management system. More here (in Chinese): mp.weixin.qq.com/s/pd6fUs5TLdB | #infosec #espionage #malware

  3. via: @campuscodi

    QiAnXin published a report on the recent attacks of #OceanLotus (#APT32) that targeted Chinese organizations throughout 2021.

    The group allegedly used 3 zero-day #vulns:

    +1 in an unnamed antivirus product
    +2 in an unnamed workstation management system. More here (in Chinese): mp.weixin.qq.com/s/pd6fUs5TLdB | #infosec #espionage #malware

  4. via: @campuscodi

    QiAnXin published a report on the recent attacks of #OceanLotus (#APT32) that targeted Chinese organizations throughout 2021.

    The group allegedly used 3 zero-day #vulns:

    +1 in an unnamed antivirus product
    +2 in an unnamed workstation management system. More here (in Chinese): mp.weixin.qq.com/s/pd6fUs5TLdB | #infosec #espionage #malware

  5. Amnesty International hat in Phishing-Mails Hinweise gefunden, dass die Gruppe Ocean Lotus einen in Deutschland lebenden vietnamesischen Blogger ausgespäht hat.
    Ocean Lotus: Cyberangriffe auf Aktivisten aus Vietnam in Deutschland