Gallery

Contacts

405 W. Greenlawn Ave Lansing, Michigan 48910

contact@techjacksolutions.com

+1-616-320-4064

APT32 (OceanLotus), a threat actor assessed with medium-high confidence as Vietnam state-directed, conducted two overlapping espionage campaigns between mid-2024 and March 2026 targeting domestic Vietnamese financial and infrastructure organizations. The first campaign compromised the FireAnt Metakit stock investor platform’s update mechanism to deliver the SPECTRALVIPER backdoor; the second maintained undetected access inside a Vietnamese transport construction firm for over a year. The campaigns signal a documented strategic shift by APT32 toward insider surveillance of Vietnam’s own financial sector and critical infrastructure, elevating risk for any organization operating in or connected to those sectors.

Author

Tech Jacks Solutions