New China-Aligned Hackers Hit State and Telecom SectorsInfosecurity Magazine·Oct 1, 11:00 UTC · Oct 1, 2025Malware55
UNC5221 Uses BRICKSTORM Backdoor to Infiltrate U.S. Legal and Technology SectorsThe Hacker News·Sep 25, 15:04 UTC · Sep 25, 2025MalwareCVE-2023-46805CVE-2024-2188760
After SharePoint attacks, Microsoft stops sharing PoC exploit code with ChinaSecurity Affairs·Aug 22, 09:12 UTC · Aug 22, 2025Exploit / PoC in the wild160
ToolShell under siege: Check Point analyzes Chinese APT StormSecurity Affairs·Aug 1, 11:19 UTC · Aug 1, 2025Ransomware57
⚡ Weekly Recap — SharePoint Breach, Spyware, IoT Hijacks, DPRK Fraud, Crypto Drains and MoreThe Hacker News·Jul 28, 15:57 UTC · Jul 28, 2025Malware in the wildCVE-2025-49706CVE-2025-49704CVE-2025-20281+27 CVEs60
Storm-2603 Exploits SharePoint Flaws to Deploy Warlock Ransomware on Unpatched SystemsThe Hacker News·Jul 28, 15:57 UTC · Jul 28, 2025Ransomware in the wildCVE-2025-49706CVE-2025-4970460
Microsoft linked attacks on SharePoint flaws to ChinaSecurity Affairs·Jul 23, 06:20 UTC · Jul 23, 2025RansomwareCVE-2025-5377060
Chinese nation-state groups exploiting SharePoint vulnerability, Microsoft confirmsThe Record·Jul 22, 19:12 UTC · Jul 22, 2025Vulnerability in the wildCVE-2025-49706CVE-2025-49704CVE-2025-53770+1 CVEs60
Microsoft Links Ongoing SharePoint Exploits to Three Chinese Hacker GroupsThe Hacker News·Jul 22, 16:43 UTC · Jul 22, 2025RansomwareCVE-2025-49706CVE-2025-49704CVE-2025-53771+1 CVEs60
⚡ THN Weekly Recap: New Attacks, Old Tricks, Bigger ImpactThe Hacker News·May 6, 07:05 UTC · May 6, 2025RansomwareCVE-2025-25015CVE-2025-22224CVE-2025-22225+18 CVEs60
⚡ Weekly Recap: VPN Exploits, Oracle's Silent Breach, ClickFix Surge and MoreThe Hacker News·May 6, 07:05 UTC · May 6, 2025Data breachCVE-2025-22457CVE-2025-24061CVE-2025-2407+15 CVEs60
U.S. Sanctions Chinese Cybersecurity Firm Over Treasury Hack Tied to Silk TyphoonThe Hacker News·Apr 4, 12:06 UTC · Apr 4, 2025Policy & legal55
Silk Typhoon shifted to specifically targeting IT management companiesCyberScoop·Mar 6, 14:54 UTC · Mar 6, 2025Exploit / PoC in the wildCVE-2025-028260
CISA Adds Five-Year-Old jQuery XSS Flaw to Exploited Vulnerabilities ListThe Hacker News·Jan 25, 09:42 UTC · Jan 25, 2025Vulnerability in the wildCVE-2020-11023CVE-2020-11022CVE-2019-1135860
Malware report for Q3 2024: threat overviewKaspersky Securelist·Nov 29, 10:45 UTC · Nov 29, 2024Malware42
New Cross-Platform Malware KTLVdoor Discovered in Attack on Chinese Trading FirmThe Hacker News·Sep 5, 05:03 UTC · Sep 5, 2024Malware42
EastWind Attack Deploys PlugY and GrewApacha Backdoors Using BoobyThe Hacker News·Aug 12, 06:40 UTC · Aug 12, 2024Malware42
APT Expands Attack on ManageEngine With Active Campaign Against ServiceDesk PlusPalo Alto Unit 42·Jun 6, 01:25 UTC · Jun 6, 2024Threat actor in the wildCVE-2021-44077CVE-2021-3361760
Inside Operation Diplomatic Specter: Chinese APT Group's Stealthy Tactics ExposedThe Hacker News·May 24, 07:49 UTC · May 24, 2024Threat actor57
Chinese Hackers Target Semiconductor Firms in East Asia with Cobalt StrikeThe Hacker News·Oct 9, 02:54 UTC · Oct 9, 2023Malware55
China-based spies are hacking East Asian semiconductor companies, report saysThe Record·Oct 6, 15:05 UTC · Oct 6, 2023Malware42
Budworm APT Evolves Toolset, Targets Telecoms and GovernmentInfosecurity Magazine·Sep 28, 17:30 UTC · Sep 28, 2023Malware42
China-Linked Budworm Targeting Middle Eastern Telco and Asian Government AgenciesThe Hacker News·Sep 28, 10:13 UTC · Sep 28, 2023Malware42
Carderbee APT targets Hong Kong orgs via supply chain attacksSecurity Affairs·Aug 23, 08:21 UTC · Aug 23, 2023Malware42
Malicious emails aimed at Taiwan have spiked in 2023The Record·May 18, 20:32 UTC · May 18, 2023Ransomware45
Researchers Uncover Powerful Backdoor and Custom Implant in YearThe Hacker News·May 17, 05:03 UTC · May 17, 2023Malware42
Operation Soft Cell: Chinese Hackers Breach Middle East Telecom ProvidersThe Hacker News·Mar 24, 03:30 UTC · Mar 24, 2023Vulnerability55
SysUpdate Malware Strikes Again with Linux Version and New Evasion TacticsThe Hacker News·Mar 2, 10:57 UTC · Mar 2, 2023Malware142
EU Cybersecurity Agency Warns Against Chinese APTsInfosecurity Magazine·Feb 17, 17:00 UTC · Feb 17, 2023Threat actor60
Five Southeast Asian telcos hacked by three different Chinese espionage groupsThe Record·Jan 18, 00:00 UTC · Jan 18, 2023Threat actor57
Chinese cyber spies targeted Israel posing as Iranian hackersThe Record·Jan 18, 00:00 UTC · Jan 18, 2023Data breachCVE-2019-060460
Amnesty International breach linked to Chinese government, investigation findsThe Record·Jan 9, 00:00 UTC · Jan 9, 2023Data breachCVE-2021-4053960
Budworm Hackers Resurface with New Espionage Attacks Aimed at U.S. OrganizationThe Hacker News·Oct 15, 00:00 UTC · Oct 15, 2022Threat actor57
FBI, CISA, and NSA Reveal How Hackers Targeted a Defense Industrial Base OrganizationThe Hacker News·Oct 6, 04:58 UTC · Oct 6, 2022Malware42
Webworm Hackers Using Modified RATs in Latest Cyber Espionage AttacksThe Hacker News·Sep 15, 00:00 UTC · Sep 15, 2022Threat actor57
Chinese Hackers Used ScanBox Framework in Recent Cyber Espionage AttacksThe Hacker News·Sep 2, 02:43 UTC · Sep 2, 2022Threat actor57
Luckymouse Uses Compromised MiMi Chat App to Target Windows and Linux SystemsInfosecurity Magazine·Aug 15, 16:30 UTC · Aug 15, 2022Vulnerability42