OceanLotus Registry Activity — Detection Rule

Detects registry keys created in OceanLotus (also known as APT32) attacks

Read the full analysis on IntelFusions