Nation-State Chinese Hackers Target Medical, Military, and AI Research in North America Google’s Threat Intelligence Group has been tracking the cyberespionage group as UNC6508 since early 2025. Eduard KovacsJune 15, 2026
Government FBI Seizes 13 Websites That Officials Say Were Used by China to Target and Recruit US Workers The 13 websites purported to be affiliated with consulting companies that advertised job openings for current and former holders of security clearances Associated PressJune 11, 2026
Nation-State Five Eyes: Chinese Spies Target Government, Military Staff With Fake Job Opportunities Posing as recruiters on online platforms, Chinese intelligence officers target personnel with access to classified or privileged information. Ionut ArghireJune 5, 2026
Cybercrime Chinese Cybercrime Group in Spotlight for Record Campaign Pace Relying on social engineering, the hacking group engages in credential phishing, malware distribution, and fraud activities. Ionut ArghireJune 4, 2026
Malware & Threats Chinese APTs Expand Targets, Update Backdoors in Recent Campaigns Salt Typhoon has hit an energy entity in Azerbaijan. Twill Typhoon has targeted Asian entities with an updated RAT. Ionut ArghireMay 14, 2026
Nation-State Palo Alto Zero-Day Exploited in Campaign Bearing Hallmarks of Chinese State Hacking The cybersecurity firm has not explicitly accused China of being behind the attack, but the evidence suggests it was. Eduard KovacsMay 7, 2026
Vulnerabilities MetInfo, Weaver E-cology Vulnerabilities in Attackers’ Crosshairs The security defects allow unauthenticated, remote attackers to execute arbitrary code through crafted requests. Ionut ArghireMay 5, 2026
Cybercrime Alleged Chinese State Hacker Extradited to US A member of Silk Typhoon, Xu Zewei is accused of launching cyberattacks against universities in the US. Ionut ArghireApril 28, 2026
Artificial Intelligence Trump Administration Vows Crackdown on Chinese Companies ‘Exploiting’ AI Models Made in US The Trump administration is vowing to crack down on foreign tech companies’ exploitation of U.S. artificial intelligence models. Associated PressApril 24, 2026
Artificial Intelligence Chinese Cybersecurity Firm’s AI Hacking Claims Draw Comparisons to Claude Mythos 360 Digital Security Group claims to have uncovered 1,000 vulnerabilities using AI, including at the Tianfu Cup hacking contest. Eduard KovacsApril 23, 2026
Malware & Threats Dozens of Malicious Crypto Apps Land in Apple App Store Masquerading as popular cryptocurrency wallets, the apps can hijack recovery phrases and private keys. Ionut ArghireApril 21, 2026
Vulnerabilities TrueConf Zero-Day Exploited in Asian Government Attacks A Chinese threat actor exploited the video conferencing platform to perform reconnaissance, escalate privileges, and execute additional payloads. Ionut ArghireApril 3, 2026
Mobile & Wireless FBI Warns of Data Security Risks From China-Made Mobile Apps The agency has not named the problematic foreign-made applications, but TikTok and Temu come to mind. Eduard KovacsApril 1, 2026
Government EU Sanctions Chinese, Iranian Firms Supporting Hacking Operations The sanctions target two Chinese individuals, two Chinese companies, and one Iranian firm involved in hacking EU member states. Ionut ArghireMarch 18, 2026
Nation-State China-Linked Hackers Hit Asian Militaries in Patient Espionage Operation The state-sponsored hackers deployed custom tools and stayed dormant in the compromised environments for months. Ionut ArghireMarch 16, 2026
Malware & Threats New Keenadu Android Malware Found on Thousands of Devices The malware has been preinstalled on many devices but it has also been distributed through Google Play and other app stores. Eduard KovacsFebruary 18, 2026
Vulnerabilities CISA: Hackers Exploiting Vulnerability in Product of Taiwan Security Firm TeamT5 The vulnerability added to CISA’s KEV catalog affects ThreatSonar Anti-Ransomware and it was patched in 2024. Eduard KovacsFebruary 18, 2026
Malware & Threats Dell RecoverPoint Zero-Day Exploited by Chinese Cyberespionage Group GTIG and Mandiant said the zero-day tracked as CVE-2026-22769 has been exploited by UNC6201 since at least 2024. Eduard KovacsFebruary 18, 2026
Government China Revives Tianfu Cup Hacking Contest Under Increased Secrecy Rewards for exploits are reportedly much smaller than in the contest’s glory days. Eduard KovacsFebruary 13, 2026
Cybercrime Hacktivists, State Actors, Cybercriminals Target Global Defense Industry, Google Warns Threat actors from Russia, China, North Korea and Iran have been observed launching attacks. Eduard KovacsFebruary 12, 2026