
Chinese hackers have been implicated in a series of cyberattacks targeting U.S. organizations, including a significant four-month intelligence-gathering operation against an unspecified entity with a notable presence in China. According to reports, the attack involved the exploitation of vulnerabilities in various systems, including Exchange Servers, and utilized tools such as FileZilla and PowerShell. The Cybersecurity and Infrastructure Security Agency (CISA) has issued warnings regarding critical vulnerabilities, including CVE-2024-51378 and CVE-2024-10905, both rated with a CVSS score of 10, indicating their severity. Additionally, hundreds of Cisco switches have been affected by a bootloader flaw, further highlighting the ongoing cybersecurity threats posed by Chinese actors. These incidents underscore the broader issue of foreign cyber espionage against U.S. networks, with indications that similar activities are occurring in multiple countries.

Hundred of CISCO switches impacted by bootloader flaw: https://t.co/s6aMzXg0Tj by Security Affairs #infosec #cybersecurity #technology #news
Microsoft: Another Chinese cyberspy crew targeting US critical orgs 'as of yesterday' https://t.co/hseu1eqjMV
A 🇨🇳-based threat actor has likely attacked a large US organization with a significant presence in the country earlier this year. The attack was likely carried out by a China-based threat actor, since some of the tools used in this attack have been previously associated with… https://t.co/u0DjTpRZMC