China-linked APT40 used ScanBox Framework in a long-running espionage campaign
Security Affairs
AUGUST 31, 2022
The campaign has been active from April 2022 through June, the threat actor was observed delivering the ScanBox exploitation framework to target visitors of a rogue Australian news website. It appears that p=23 specifies the page value for landing page the user is redirected to, while the number string that follows it, e.g. the “11” in “?p=23-11”,
Let's personalize your content