Chinese cyber espionage

presented by
Global

US Agencies, Defense Companies Hacked Via VPNs

Threat actors are targeting one newly discovered and three previously known vulnerabilities in Pulse Connect Secure enterprise VPNs, according to a CISA emergency directive and alert, as well as blog posts by FireEye and Ivanti. "There is no indication the identified backdoors were introduced through a supply chain compromise of the company's network or software deployment process," FireEye noted.

Global

CISA ‘Strongly Urges’ Patching As Widespread Exchange Server Hacking Continues

Security professionals are increasingly observing multiple threat actors, from nation-states to cryptominers, exploiting the vulnerabilities. As for China-based HAFNIUM, "This is part of the much larger Chinese effort to constantly be ferreting out new vulnerabilities and then exploiting them -- with no end in sight," said Heritage's Dean Cheng. "The Chinese will pay close attention to the Biden administration response."

presented by
presented by