An advanced persistent threat espionage campaign with suspected ties to the Chinese government quietly targeted businesses and governments in 10 countries for two years, according to a report by Fox-IT. The campaign, dubbed Wocao, targeted government and managed service providers while managing to be “under the radar” The Dutch-based security firm suspects APT20 Group was involved in the campaign. The group is known to rely on watering hole attacks – which involve compromising legitimate websites and installing malware to target website visitors.”]
Source: https://www.databreachtoday.com/researchers-chinese-apt-espionage-campaign-bypasses-2fa-a-13557