It's bad enough that we're in the middle of a global pandemic, but the Chinese are actively attacking our government and commercial organizations. The good thing is that they're being called out by FireEye and shedding some light on their antics.
Beginning this year, FireEye observed Chinese
actor APT41 carry out one of the broadest campaigns by a Chinese cyber
espionage actor we have observed in recent years. Between January 20 and
March 11, FireEye observed APT41 attempt to
exploit vulnerabilities in Citrix NetScaler/ADC, Cisco routers, and
Zoho ManageEngine Desktop Central at over 75 FireEye customers.
Countries we’ve seen targeted include Australia, Canada, Denmark,
Finland, France, India, Italy, Japan, Malaysia, Mexico, Philippines,
Poland, Qatar, Saudi Arabia, Singapore, Sweden, Switzerland, UAE, UK
and USA. The following industries were targeted: Banking/Finance,
Construction, Defense Industrial Base, Government, Healthcare, High
Technology, Higher Education, Legal, Manufacturing, Media,
Non-profit, Oil & Gas, Petrochemical, Pharmaceutical, Real Estate,
Telecommunications, Transportation, Travel, and Utility. It’s unclear if
APT41 scanned the Internet and attempted exploitation en masse or
selected a subset of specific organizations to target,
but the victims appear to be more targeted in nature.
https://www.fireeye.com/blog/threat-research/2020/03/apt41-initiates-global-intrusion-campaign-using-multiple-exploits.html
More information about APT41 can be found on the MITRE ATT&CK site
https://attack.mitre.org/groups/G0096/