logo

Chinese ‘FamousSparrow’ hackers back from the dead and targeting North America, researchers say

ID: fc7e00fb-7170-56fb-9cbd-fbb671aec61d

STIX ID: report--fc7e00fb-7170-56fb-9cbd-fbb671aec61d

Feed Name: The Record from Recorded Future News

Threat Score
88/100

Date Published: 2025-03-26

Date Updated: 2026-05-01

...
...

ESET investigators uncovered renewed activity by the Chinese government-linked APT group FamousSparrow, identifying upgraded variants of its SparrowDoor backdoor and use of additional tools (including ShadowPad) in attacks against organizations in the U.S., Mexico, and Honduras; the group has historical ties to ProxyLogon exploitation and has targeted governments, hotels, engineering firms and law firms since at least 2019.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.