Targeting of Chinese users with three zero days
Date of report
  • December 2022
Ocean Lotus, a Vietnamese APT, was found deploying three zero days on Chinese networks. The attacks were primarily directed at gaining and expanding access to routers, networks, and cameras in China. Ocean Lotus could have also incorporated some of the compromised devices into its Torii botnet.
Suspected victims
  • Chinese organizations and surveillance companies
Suspected state sponsor
  • Vietnam
Type of incident
  • Espionage
Target category
  • Government
  • Civil society
Victim government reaction
  • Unknown
Policy response
Suspected state sponsor response