Chinese Hackers Have Stepped Up Attacks on Taiwanese Organizations, Cybersecurity Firm Says

June 24, 2024 at 03:18PM A Chinese state-sponsored hacking group known as RedJuliett has intensified attacks on Taiwanese organizations, particularly in government, education, technology, and diplomacy sectors. They exploited a vulnerability in SoftEther VPN software to access servers. The group’s activities align with Chinese state-sponsored hacking patterns. Recorded Future expects continued targeting of Taiwanese agencies, … Read more

In Other News: Airline Privacy Review, SEC’s SolarWinds Hack Probe, Apple MFA Bombing

March 29, 2024 at 10:36AM Summary: SecurityWeek’s roundup compiles this week’s cybersecurity stories, including US airlines facing privacy reviews, HHS cyberattack investigation, analysis of phishing kits like Tycoon and Darcula, MFA bombing attacks on Apple users, continued investigation into Chinese hacking of Finland’s parliament, and revelations about abandoned WordPress plugins. Other topics include the SEC’s … Read more

China’s Dogged Campaign to Portray Itself as Victim of US Hacking

February 12, 2024 at 06:09AM China has been accused of attempting to frame the US for cyber espionage, but a recent report from SentinelOne found most claims to be unsubstantiated. China seeks to shift global opinion on its hacking activities, but their reports lack technical evidence. Additionally, China has been coordinating a disinformation campaign to … Read more

China-Linked Volt Typhoon Hackers Possibly Targeting Australian, UK Governments

January 11, 2024 at 10:41AM Chinese state-sponsored hackers are targeting government entities in the US, UK, and Australia by exploiting old vulnerabilities in Cisco routers, reports SecurityScorecard. The actors likely compromised one-third of observed vulnerable devices and may operate a much larger botnet than previously believed, as indicated by connections to government sites. The attacks … Read more

A New, Spookier Gh0st RAT Malware Haunts Global Cyber Targets

November 30, 2023 at 04:08PM A modified “Gh0st RAT” malware, called “SugarGh0st,” has been targeting South Koreans and Uzbekistan’s Ministry of Foreign Affairs. Distributed via phishing with decoy documents, the updated malware evades detection and allows remote access, data theft, and system manipulation. Originating from March 2008, Gh0st RAT remains effective due to its adaptability … Read more

Chinese Hackers Launch Covert Espionage Attacks on 24 Cambodian Organizations

November 13, 2023 at 01:06AM Chinese hacking groups have been found targeting 24 Cambodian government organizations in a long-term espionage campaign. The cyber activity is believed to align with China’s geopolitical goals and involves leveraging strong relations with Cambodia to expand naval operations in the region. The groups have been using fake cloud backup and … Read more

Mandiant Intelligence Chief Raises Alarm Over China’s ‘Volt Typhoon’ Hackers in US Critical Infrastructure

October 25, 2023 at 12:16PM Chinese hacking group Volt Typhoon has shifted its focus to targeting critical infrastructure installations, according to Mandiant Intelligence’s John Hultquist. The group, known for economic espionage and IP theft, has been conducting deliberate, long-term infiltration attempts below the radar. Experts have raised concerns, with Microsoft noting the potential for disruption … Read more