ao link
Menu
Teiss - Cracking Cyber Security
Teiss - Cracking Cyber Security

Chinese Hacker Group ‘FamousSparrow’ Resurfaces

The FamousSparrow hacking group, thought to be inactive since 2022, has re-emerged, targeting organizations in the U.S., Mexico, and Honduras, according to ESET researchers.

 

Investigating a cyberattack on a U.S. trade group, ESET discovered upgraded versions of the group’s SparrowDoor backdoor malware. Despite modifications, it was traced back to earlier versions.

 

Active since 2019, FamousSparrow has targeted hotels, governments, and international organizations across multiple countries. Recent attacks exploited outdated Windows Server and Microsoft Exchange vulnerabilities.

 

Using custom malware and Chinese cyber tools like ShadowPad, the group can steal data, monitor activity, and execute commands remotely.

 

FamousSparrow was also one of the first to exploit Microsoft Exchange’s ProxyLogon flaw in 2021. With its reappearance and enhanced tools, it remains a serious cyber threat.


Please take 30 seconds to register

Register Now

 

Already have an account? Sign in

Remember Login
Teiss - Cracking Cyber Security

Subscribe to our Weekly Newsletter

Receive the latest insights direct to your inbox, and gain access to our exclusive events.
Teiss - Cracking Cyber Security

Winstone House, 3rd Floor,
Units 306-309, 2-4 Dollis park,
London, N3 1HF

 

020 8349 4363

info@teiss.co.uk

 © 2026, Lyonsdown Limited. teiss® is a registered trademark of Lyonsdown Ltd. VAT registration number: 830519543