Close Menu
Indo Guard OnlineIndo Guard Online
  • Home
  • Cyber Security
  • Risk Management
  • Travel
  • Security News
  • Tech
  • More
    • Data Privacy
    • Data Protection
    • Global Security
What's Hot

Invitation to Disagreement Link from ASYNCRAT and SKULD Theft, focused on cry

June 14, 2025

More than 269 000 sites infected with malicious JSFiretruC JavaScript software in one month

June 13, 2025

Transition from Monitoring Alert to Risk Measurement

June 13, 2025
Facebook X (Twitter) Instagram
Facebook X (Twitter) Instagram YouTube
Indo Guard OnlineIndo Guard Online
Subscribe
  • Home
  • Cyber Security
  • Risk Management
  • Travel
  • Security News
  • Tech
  • More
    • Data Privacy
    • Data Protection
    • Global Security
Indo Guard OnlineIndo Guard Online
Home » Chinese hackers are infiltrating US ISPs in a cyberespionage campaign
Global Security

Chinese hackers are infiltrating US ISPs in a cyberespionage campaign

AdminBy AdminSeptember 26, 2024No Comments2 Mins Read
Cyber Espionage Campaign
Share
Facebook Twitter LinkedIn Pinterest Email Copy Link


September 26, 2024Ravi LakshmananCyber ​​espionage / hacking

Cyber ​​espionage company

Beijing-backed nation-state threat actors broke into a “handful” of US Internet Service Providers (ISPs) in a cyber espionage campaign designed to gather sensitive information, The Wall Street Journal reported Wednesday.

The activity is attributed to a threat that Microsoft is tracking as Salt Typhoon, which is also known as The famous sparrow and GhostEmperor.

“Investigators are looking into whether attackers gained access to Cisco Systems routers, core network components that route much of the Internet’s traffic,” the paper quoted people familiar with the matter as saying.

Cyber ​​security

The ultimate goal of attacks is to gain a foothold in targeted networks, allowing threat actors to collect sensitive data or launch malicious cyberattacks.

GhostEmperor was born for the first time in October 2021, when the Russian cyber security company Kasperksy detailed a long-running target evasion operation in Southeast Asia to deploy a rootkit called Demodex.

The campaign targets prominent organizations in Malaysia, Thailand, Vietnam and Indonesia, as well as in Egypt, Ethiopia and Afghanistan.

Back in July 2024, Sygnia discovered that an unnamed customer had been compromised by a 2023 threat actor to infiltrate one of its business partner’s networks.

“During the investigation, it was determined that multiple servers, workstations and users were compromised by an attacker who deployed various tools to communicate with a set of (command and control) servers,” the company said in a statement. said. “One of these tools was identified as a Demodex variant.”

Cyber ​​security

The development comes days after the US government said it had disrupted a 260,000-device botnet dubbed Raptor train controlled by another Beijing-linked hacking group called Flax Typhoon.

It also represents the latter in a line with China’s efforts are state-funded to the target telecommunications, internet service providers and other critical infrastructure sectors.

Did you find this article interesting? Follow us Twitter  and LinkedIn to read more exclusive content we publish.





Source link

Share. Facebook Twitter Pinterest LinkedIn Tumblr Email Copy Link
Admin
  • Website

Related Posts

Invitation to Disagreement Link from ASYNCRAT and SKULD Theft, focused on cry

June 14, 2025

More than 269 000 sites infected with malicious JSFiretruC JavaScript software in one month

June 13, 2025

Transition from Monitoring Alert to Risk Measurement

June 13, 2025

Band

June 13, 2025

Apple Zero Click’s downside in reports to spy on journalists using spyware Paragon software

June 13, 2025

Both Vextrio and affiliates control the global network

June 12, 2025
Add A Comment
Leave A Reply Cancel Reply

Loading poll ...
Coming Soon
Do You Like Our Website
: {{ tsp_total }}

Subscribe to Updates

Get the latest security news from Indoguardonline.com

Latest Posts

Invitation to Disagreement Link from ASYNCRAT and SKULD Theft, focused on cry

June 14, 2025

More than 269 000 sites infected with malicious JSFiretruC JavaScript software in one month

June 13, 2025

Transition from Monitoring Alert to Risk Measurement

June 13, 2025

Band

June 13, 2025

Apple Zero Click’s downside in reports to spy on journalists using spyware Paragon software

June 13, 2025

Both Vextrio and affiliates control the global network

June 12, 2025

How to Decide Safety Expanding

June 12, 2025

The new tokenbreak attack combines AI moderation with a one -sided character change

June 12, 2025
About Us
About Us

Provide a constantly updating feed of the latest security news and developments specific to Indonesia.

Facebook X (Twitter) Pinterest YouTube WhatsApp
Our Picks

Invitation to Disagreement Link from ASYNCRAT and SKULD Theft, focused on cry

June 14, 2025

More than 269 000 sites infected with malicious JSFiretruC JavaScript software in one month

June 13, 2025

Transition from Monitoring Alert to Risk Measurement

June 13, 2025
Most Popular

In Indonesia, crippling immigration ransomware breach sparks privacy crisis

July 6, 2024

Why Indonesia’s Data Breach Crisis Calls for Better Security

July 6, 2024

Indonesia’s plan to integrate 27,000 govt apps in one platform welcomed but data security concerns linger

July 6, 2024
© 2025 indoguardonline.com
  • Home
  • About us
  • Contact us
  • Privacy Policy

Type above and press Enter to search. Press Esc to cancel.