XE Group Shifts From Card Skimming to Supply Chain Attacks
ID: 2885ddb0-2189-58de-9d56-7c2da336057d
STIX ID: report--2885ddb0-2189-58de-9d56-7c2da336057d
Feed Name: Dark Reading
Threat Score
XE Group, a Vietnam-linked cybercrime actor historically known for credit-card skimming, has escalated into targeted information theft against manufacturing and distribution supply chains by exploiting two VeraCore zero-day vulnerabilities (CVE-2024-57968 and CVE-2025-25181) to install ASPX web shells, maintain long-term persistence (including reactivation of access from 2020), and perform varied malicious actions.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
