
A recent cybersecurity report has revealed a four-month-long cyberattack on a major U.S. organization, believed to be orchestrated by Chinese hackers. The attack targeted Exchange Servers and involved the use of various tools such as FileZilla and PowerShell to steal sensitive data. Researchers linked the attack to a China-based threat actor, identified as Earth Minotaur, which utilized the MOONSHINE exploit kit and the DarkNimbus backdoor. These tools are capable of executing multi-platform attacks, affecting both Android and Windows devices, with a particular focus on vulnerable communities including Tibetans and Uyghurs. The attack has raised significant concerns regarding national security and the protection of sensitive information within organizations with a substantial presence in China.
Earth Minotaur: MOONSHINE Exploit Kit and DarkNimbus Backdoor Threaten Multi-Platform Security https://t.co/FnfM2VZ0LT
A 🇨🇳-based threat actor has likely attacked a large US organization with a significant presence in the country earlier this year. The attack was likely carried out by a China-based threat actor, since some of the tools used in this attack have been previously associated with… https://t.co/u0DjTpRZMC
An unspecified U.S. organization with a significant presence in China was the victim of a four-month-long targeted intelligence-gathering attack that was likely carried out by a China-based threat actor, according to @symantec. #cybersecurity #infosec https://t.co/wcZBvnvspF