Chinese APT10 Targets Japanese Organizations
Chinese APT10 Targets Japanese Organizations
1. Chinese nation-state actor targets Japanese entities using LODEINFO and NOOPDOOR malware.
2. Campaign, named Cuckoo Spear by Cybereason, attributed to APT10 with multiple aliases.
3. NOOPDOOR and LODEINFO used to exfiltrate data from enterprise networks.
4. Attacks involve exploiting flaws in Array AG (CVE-2023-28461), Fortinet (CVE-2023-27997), and Proself (CVE-2023-45727).
5. LODEINFO and NOOPDOOR maintain persistence for over two years using scheduled tasks.
#APT10 #CuckooSpear #LODEINFO #NOOPDOOR #CyberEspionage #NationStateActor #DataExfiltration #CVE-2023-28461 #CVE-2023-27997 #CVE-2023-45727

Leave a Reply

Your email address will not be published. Required fields are marked *