China's 'FamousSparrow' APT Nests in South Caucasus Energy Firm
ID: 5b7afe73-117b-53b5-8f30-a6e349cf6426
STIX ID: report--5b7afe73-117b-53b5-8f30-a6e349cf6426
Feed Name: Dark Reading
Bitdefender researchers reported that the China-linked APT FamousSparrow conducted a targeted campaign against an Azerbaijani oil-and-gas company between late December and February, leveraging an unpatched Microsoft Exchange server for initial access and a novel two-stage DLL sideloading method to deploy a modified Deed RAT; operational technology networks were not impacted, but the activity signals expanding Chinese APT interest in the South Caucasus and highlights technique sharing across groups.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
