Tag: CHINA
Threat Actor: China-linked hackers | China-linked hackers Victim: U.S.…
Keypoints :
UNC5812 and Secret Blizzard are Russian hacker groups active in Q4 2024.…Threat Actor: APT 28 (Fancy Bear) | APT 28 Victim: Kazakhstan Government | Kazakhstan Government
Key Point :
The hacking group is leveraging seemingly legitimate documents to infect and spy on government officials.…Threat Actor: UAC-0063 | APT28 Victim: Kazakhstan | Kazakhstan
Key Point :
The campaign employs a “Double-Tap” technique, using two malicious Word documents to execute commands and deploy the HATVIBE backdoor.…Keypoints :
UAC-0063 is a Russian intrusion set active since at least 2021, targeting various countries.…Threat Actor: UNC5337 | UNC5337 Victim: Nominet | Nominet
Key Point :
Nominet operates over 11 million domain names and runs the UK’s Protective Domain Name Service.…Threat Actor: UNC5337 | UNC5337 Victim: Ivanti | Ivanti
Key Point :
A critical vulnerability in Ivanti Connect Secure appliances has been exploited as a zero-day, allowing for remote code execution.…Threat Actor: Chinese cyberspies | Silk Typhoon Victim: US Treasury Department | US Treasury Department
Key Point :
Hackers gained initial access using a compromised API key from BeyondTrust’s remote management service.…Keypoints :
Proton Mail experienced a worldwide outage due to a surge in database connections during infrastructure migration.…Key Points :
11 million customer records leaked from a vehicle dealer database in China. Data includes sensitive customer relationship information. Incident raises concerns about data security practices in the automotive industry.…Threat Actor: UNC5337 | UNC5337 Victim: Ivanti | Ivanti
Key Point :
UNC5337 has exploited CVE-2025-0282, a critical vulnerability allowing code execution without authentication.…Key Points :
Approximately 400,000 users potentially affected by the breach. Exposed information includes sensitive user details such as names and email addresses. Concerns raised about user privacy and platform security.…Threat Actor: Silk Typhoon | Silk Typhoon Victim: U.S.…
Threat Actor: Natohub, Silk Typhoon | Natohub, Silk Typhoon Victim: International Civil Aviation Organization, Bank of America, Green Bay Packers | International Civil Aviation Organization, Bank of America, Green Bay Packers
Key Point :
The US Defense Department has linked Tencent and CATL to the Chinese military.…