Nation-State Chinese Cyberspies Targeting ASEAN Entities Two Chinese cyberespionage groups have been targeting entities and member countries affiliated with ASEAN. Ionut ArghireMarch 28, 2024
Nation-State Chinese APT Hacks 48 Government Organizations Earth Krahang, likely a penetration team of Chinese government contractor I-Soon, has compromised 48 government entities worldwide. Ionut ArghireMarch 19, 2024
Malware & Threats Chinese Cyberspies Target Tibetans via Watering Hole, Supply Chain Attacks Chinese APT Evasive Panda compromises a software developer’s supply chain to target Tibetans with malicious downloaders. Ionut ArghireMarch 8, 2024
Malware & Threats Chinese Cyberspies Use New Malware in Ivanti VPN Attacks Chinese threat actors target Ivanti VPN appliances with new malware designed to persist system upgrades. Ionut ArghireFebruary 28, 2024
Nation-State Stealthy Cyberespionage Campaign Remained Undiscovered for Two Years A possibly China-linked threat actor uses a custom backdoor in a cyberespionage campaign ongoing since at least 2021. Ionut ArghireFebruary 12, 2024
Malware & Threats Elusive Chinese Cyberspy Group Hijacks Software Updates to Deliver Malware The China-linked cyberespionage group Blackwood has been caught delivering malware to entities in China and Japan. Ionut ArghireJanuary 26, 2024
Cyberwarfare Russian APT Known for Phishing Attacks Is Also Developing Malware, Google Warns Russian threat group ColdRiver has developed Spica, a malware that enables it to compromise systems and steal information. Eduard KovacsJanuary 18, 2024
Malware & Threats Malware Used in Ivanti Zero-Day Attacks Shows Hackers Preparing for Patch Rollout Ivanti zero-day vulnerabilities dubbed ConnectAround could impact thousands of systems and Chinese cyberspies are preparing for patch release. Eduard KovacsJanuary 12, 2024
Cyberwarfare Turkish Cyberspies Targeting Netherlands Turkish state-sponsored group Sea Turtle has been targeting multiple organizations in the Netherlands for espionage. Ionut ArghireJanuary 8, 2024
Malware & Threats Russian Cyberspies Exploiting TeamCity Vulnerability at Scale: Government Agencies US, UK, and Poland warn of Russia-linked cyberespionage group’s broad exploitation of recent TeamCity vulnerability. Ionut ArghireDecember 14, 2023
Cyberwarfare Sandman Cyberespionage Group Linked to China A recent emergence on the threat landscape, the Sandman APT appears linked to a Chinese hacking group. Ionut ArghireDecember 12, 2023
Cybercrime New Threat Actor ‘AeroBlade’ Targeted US Aerospace Firm in Espionage Campaign BlackBerry attributes cyberattack against an aerospace organization in the US to a new threat actor named AeroBlade. Ionut ArghireDecember 5, 2023