UINAT
NewsRankingsCompaniesGuidesBreachesCompliance
TagsAbout
Home/Tags/China

China

12 articles tagged with "China".

China-Linked Amaranth-Dragon Exploits WinRAR Flaw in Southeast Asian Espionage Campaigns

Check Point Research documents a new threat cluster weaponizing CVE-2025-8088 within days of disclosure to target government and law enforcement agencies across Cambodia, Thailand, Philippines, and neighboring countries.

February 4, 2026 APTChinaAmaranth-Dragon

Notepad++ Update Mechanism Hijacked by Chinese Threat Actors to Deliver Malware

Lotus Blossom APT compromised Notepad++'s hosting provider to intercept update traffic and deliver the Chrysalis backdoor to targeted government and financial organizations over a six-month period.

February 2, 2026 supply chainmalwareChina

WinRAR Vulnerability Still Widely Exploited by Nation-State and Cybercrime Groups

CVE-2025-8088 (CVSS 8.8), a path traversal flaw abusing Windows Alternate Data Streams, continues to be exploited by Russian APTs, Chinese actors, and cybercriminals to achieve persistence via Startup folder drops.

February 2, 2026 WinRARCVE-2025-8088APT

Malicious VS Code Extensions Steal Code from 1.5 Million Developers

Two VS Code extensions masquerading as AI coding assistants—ChatMoss and ChatGPT中文版—exfiltrated source code, API keys, and proprietary algorithms from 1.5 million developers to servers in China.

February 2, 2026 supply chainVS Codedeveloper tools

Google Disrupts IPIDEA, One of the World's Largest Residential Proxy Networks

Google Threat Intelligence dismantles a Chinese-operated proxy network spanning 9 million Android devices and 13 proxy brands, used by 550+ threat groups including nation-state actors from China, Russia, Iran, and North Korea.

January 29, 2026 Googleproxy networkbotnet

China-Linked UAT-8099 Deploys BadIIS Malware for SEO Fraud Across Asia

Cisco Talos identified Chinese-speaking threat actor UAT-8099 compromising IIS servers in Asia with BadIIS malware variants, hijacking legitimate websites for SEO poisoning and credential theft.

January 28, 2026 UAT-8099BadIISChina

China-Linked Mustang Panda Deploys Updated COOLCLIENT Backdoor Against Governments

APT group targets government entities across Southeast Asia with enhanced malware featuring clipboard monitoring, browser credential theft, and kernel-mode rootkit capabilities.

January 27, 2026 APTChinaMustang Panda

8.73 Billion Chinese Records Exposed in Largest Known Single-Source Data Leak

Cybernews researchers discovered a massive Elasticsearch cluster containing national IDs, passwords, and personal data of hundreds of millions of Chinese citizens, hosted on bulletproof infrastructure and accessible for three weeks.

January 26, 2026 data breachChinaElasticsearch

Salt Typhoon: Inside the Worst Telecom Hack in US History

Chinese state-sponsored hackers compromised nine major US telecommunications carriers throughout 2024, accessing wiretap systems, call metadata for over a million users, and communications of presidential campaign staff.

January 17, 2026 Salt TyphoonChinatelecom

Volt Typhoon Discovered Pre-Positioned in Additional US Critical Infrastructure Sectors

Joint CISA/NSA/FBI advisory reveals Chinese state-sponsored group Volt Typhoon has expanded persistent access into US water, energy, and transportation infrastructure, maintaining dormant footholds for 12-18 months undetected.

January 12, 2026 Volt TyphoonChinacritical infrastructure

Chinese Hackers Exploited VMware ESXi Zero-Days a Year Before Disclosure

Huntress discovered a Chinese-linked exploit toolkit (MAESTRO) targeting VMware ESXi that was built in February 2024—a year before VMware disclosed CVE-2025-22224. Over 30,000 instances remain exposed.

January 9, 2026 VMwareESXizero-day

Salt Typhoon — Chinese State-Sponsored Espionage Infiltrates US Telecommunications

The Salt Typhoon campaign by Chinese state-sponsored actors compromised major US telecom providers including AT&T, Verizon, and T-Mobile, accessing lawful intercept systems and call metadata in what officials called the worst telecom hack in US history.

October 15, 2025 Salt TyphoonChinaespionage
SYS ONLINE
PAGES 963
UPDATED 2026-02-06
UINAT

Security news, vulnerability alerts, and expert resources for professionals who defend the perimeter.

// Sections

  • › News
  • › Rankings
  • › Companies
  • › Breaches

// Resources

  • › Guides
  • › Compliance
  • › Tags
  • › About

// Feeds

  • › All Content
  • › News Only
  • › Breaches Only

> © 2026 UINAT. All rights reserved.

[ DEFEND THE PERIMETER ]

Search