Trend Micro finds the Chinese APT group has compromised at least 70 government organizations over the last two years, in 23 different countries. But the group's logs indicate it has targeted over 110 organizations in 10 additional nations.
Cyber Security
Cyber criminals, state-sponsored hackers and even the occasional disgruntled employee are constantly looking to gain unauthorized access for a variety of purposes: theft of money, cyber espionage, personal information for sale or for use in scams, and damage to critical infrastructure for just a few of the most common.
So how does an organization mitigate an entire world full of continual cyber attacks? Just as buildings have a number of necessary elements of physical security: access control, cameras, alarms and so on; there are similar key elements of cyber security that are absolutely vital for just about any modern business.
It starts with identifying and closing the most common doors that attackers use. For example, phishing attacks on employees are far and away the most common initial point of entry. The breach of even a low-level employee account can quickly turn into an escalation in access privileges and the ability to reach sensitive information. This is also true of smart devices, which are generally more poorly secured than computers and phones.
Chinese APT group Weaver Ant breached and maintained a foothold on a large Asian telco network for four years using compromised Zyxel CPE routers for cyber espionage.
It appears that Chinese hackers have been running Cloud Hopper attacks targeting tech providers for access to their customers' corporate intellectual property and government secrets.
FBI's testimony suggests that the Chinese cyber threat to national security is becoming much more sophisticated in the realm of cyber espionage including abuse of the “Thousand Talents” program.
China-based game developer exposed personal information and transaction records of nearly 6 million Battle for the Galaxy players in an unsecured ElasticSearch data leak.
A Chinese hacker allegedly belonging to Silk Typhoon, the state-sponsored Chinese hacking group behind the Microsoft Exchange Server attacks of 2021 among other major actions, was picked up in Milan on July 3 on a US arrest warrant.
Advisory warns that state-backed Chinese hackers have deep penetration into "major" US telcos, and are getting in by compromising an assortment of networking equipment and routers.
A recent breach of the US Treasury yielded access to Secretary Janet Yellen's computer along with those of two of her lieutenants, according to inside sources speaking to Bloomberg News reporters.
Hackers used sophisticated techniques and leveraged a commercial internet service provider vendor’s infrastructure to breach FBI surveillance systems, something both Chinese and Russian state-backed threat actors are notorious for doing. It is unclear at this point which of the numerous Chinese hacking groups may have been involved with the security breach.
State-sponsored hackers have exploited two Ivanti zero-days to compromise over 1,700 ICS VPN appliances, cybersecurity firm Volexity has found.










