‘NanshOu’ China-based attack uses APT-like techniques to Infect Servers worldwide. Breached machines include more than 50,000 servers belonging to companies in the healthcare, telecommunications, media and IT sectors. Attack leverages some techniques that have often been seen in advanced persistence threats (APTs) The same process was seen in all the attacks, ranging from breaching to breaching to post-compromise. Attackers then installed a sophisticated kernel-mode rootkit to prevent the malware from being terminated.”]