APT31, a China-linked advanced persistent threat group, has been conducting stealthy cyberattacks on the Russian IT sector from 2024 to 2025, focusing on contractors and integrators for government agencies. These attacks have remained undetected for extended periods, raising concerns about the security of the targeted organizations.
Articles tagged "APT"
Found 3 articles
Impact: N/A
Remediation: N/A
The article discusses the ToddyCat APT attacks that target corporate email systems, highlighting the use of advanced tools like TomBerBil, TCSectorCopy, and XstReader. The severity of these attacks lies in their method of stealing access tokens from Outlook, posing significant risks to corporate security.
Impact: Corporate email systems, Outlook
Remediation: N/A
Actively Exploited
China's state-sponsored hackers, known as 'PlushDaemon', have developed a method to infect routers and hijack software updates, primarily targeting Chinese organizations. This sophisticated approach allows them to operate under the radar, posing a significant threat to cybersecurity within the region.
Impact: Routers and software update systems used by Chinese organizations.
Remediation: Implement network security measures, regularly update router firmware, and monitor for unusual software update behaviors.