* . *
  • About
  • Advertise
  • Privacy & Policy
  • Contact
Friday, December 5, 2025
Earth-News
  • Home
  • Business
  • Entertainment
    12TH ANNUAL WOMEN IN ENTERTAINMENT RETURNS TO DIGNITY HEALTH SPORTS PARK ON DECEMBER 11 – Dignity Health Sports Park

    12th Annual Women in Entertainment Event Makes a Grand Return to Dignity Health Sports Park on December 11

    Gwyneth Paltrow Gives Red Hot Stiletto Trend a Contrast Twist at Women in Entertainment Gala – WWD

    Gwyneth Paltrow Turns Up the Heat with Bold Stiletto Twist at Women in Entertainment Gala

    Winter in Saudi Arabia: Where Ancient Heritage Meets Modern Entertainment – TravelPulse

    Winter in Saudi Arabia: Where Ancient Heritage Meets Modern Entertainment – TravelPulse

    Independent Nation developers sue Sunland Park after reversal on entertainment complex – KTSM 9 News

    Independent Nation developers sue Sunland Park after reversal on entertainment complex – KTSM 9 News

    The Steamy, Sexy, NSFW Show That I’m Seeing Everywhere on Social Media – PureWow

    The Steamy, Sexy, NSFW Show That’s Taking Social Media by Storm

    7 Christmas Gems On Netflix To Get You In The Holiday Spirit – Refinery29

    7 Must-Watch Christmas Gems on Netflix to Ignite Your Holiday Spirit

  • General
  • Health
  • News

    Cracking the Code: Why China’s Economic Challenges Aren’t Shaking Markets, Unlike America’s” – Bloomberg

    Trump’s Narrow Window to Spread the Truth About Harris

    Trump’s Narrow Window to Spread the Truth About Harris

    Israel-Gaza war live updates: Hamas leader Ismail Haniyeh assassinated in Iran, group says

    Israel-Gaza war live updates: Hamas leader Ismail Haniyeh assassinated in Iran, group says

    PAP Boss to Niger Delta Youths, Stay Away from the Protest

    PAP Boss to Niger Delta Youths, Stay Away from the Protest

    Court Restricts Protests In Lagos To Freedom, Peace Park

    Court Restricts Protests In Lagos To Freedom, Peace Park

    Fans React to Jazz Jennings’ Inspiring Weight Loss Journey

    Fans React to Jazz Jennings’ Inspiring Weight Loss Journey

    Trending Tags

    • Trump Inauguration
    • United Stated
    • White House
    • Market Stories
    • Election Results
  • Science
  • Sports
  • Technology
    The 65″ Panasonic Z95A 4K OLED TV With MLA Technology Drops to $1,499.99 Only at Best Buy – IGN Southeast Asia

    The 65″ Panasonic Z95A 4K OLED TV With MLA Technology Drops to $1,499.99 Only at Best Buy – IGN Southeast Asia

    Hospitals Under Pressure: How Technology Can Transform Operations – MedCity News

    Hospitals Under Pressure: How Technology Is Transforming Healthcare Operations

    Novidea Global Survey Reveals 73% of Insurance Executives Plan to Change Core Insurance Management Technology Over the Next Three Years – markets.businessinsider.com

    Nearly Three-Quarters of Insurance Executives Plan Major Overhaul of Core Management Technology Within Three Years

    Senator Schmitt Emphasizes Need to Strengthen, Update Cybersecurity Technology – Senator Schmitt (.gov)

    Senator Schmitt Urges Immediate Action to Strengthen Cybersecurity Technology

    CliniComp Named a Top 50 Healthcare Technology Company by The Healthcare Technology Report for Second Consecutive Year – PR Newswire

    CliniComp Named a Top 50 Healthcare Technology Company by The Healthcare Technology Report for Second Consecutive Year – PR Newswire

    Five Veterinary Platforms Transforming Europe’s Clinics with AI and Cloud Technology – gritdaily.com

    Five Veterinary Platforms Transforming Europe’s Clinics with AI and Cloud Innovation

    Trending Tags

    • Nintendo Switch
    • CES 2017
    • Playstation 4 Pro
    • Mark Zuckerberg
No Result
View All Result
  • Home
  • Business
  • Entertainment
    12TH ANNUAL WOMEN IN ENTERTAINMENT RETURNS TO DIGNITY HEALTH SPORTS PARK ON DECEMBER 11 – Dignity Health Sports Park

    12th Annual Women in Entertainment Event Makes a Grand Return to Dignity Health Sports Park on December 11

    Gwyneth Paltrow Gives Red Hot Stiletto Trend a Contrast Twist at Women in Entertainment Gala – WWD

    Gwyneth Paltrow Turns Up the Heat with Bold Stiletto Twist at Women in Entertainment Gala

    Winter in Saudi Arabia: Where Ancient Heritage Meets Modern Entertainment – TravelPulse

    Winter in Saudi Arabia: Where Ancient Heritage Meets Modern Entertainment – TravelPulse

    Independent Nation developers sue Sunland Park after reversal on entertainment complex – KTSM 9 News

    Independent Nation developers sue Sunland Park after reversal on entertainment complex – KTSM 9 News

    The Steamy, Sexy, NSFW Show That I’m Seeing Everywhere on Social Media – PureWow

    The Steamy, Sexy, NSFW Show That’s Taking Social Media by Storm

    7 Christmas Gems On Netflix To Get You In The Holiday Spirit – Refinery29

    7 Must-Watch Christmas Gems on Netflix to Ignite Your Holiday Spirit

  • General
  • Health
  • News

    Cracking the Code: Why China’s Economic Challenges Aren’t Shaking Markets, Unlike America’s” – Bloomberg

    Trump’s Narrow Window to Spread the Truth About Harris

    Trump’s Narrow Window to Spread the Truth About Harris

    Israel-Gaza war live updates: Hamas leader Ismail Haniyeh assassinated in Iran, group says

    Israel-Gaza war live updates: Hamas leader Ismail Haniyeh assassinated in Iran, group says

    PAP Boss to Niger Delta Youths, Stay Away from the Protest

    PAP Boss to Niger Delta Youths, Stay Away from the Protest

    Court Restricts Protests In Lagos To Freedom, Peace Park

    Court Restricts Protests In Lagos To Freedom, Peace Park

    Fans React to Jazz Jennings’ Inspiring Weight Loss Journey

    Fans React to Jazz Jennings’ Inspiring Weight Loss Journey

    Trending Tags

    • Trump Inauguration
    • United Stated
    • White House
    • Market Stories
    • Election Results
  • Science
  • Sports
  • Technology
    The 65″ Panasonic Z95A 4K OLED TV With MLA Technology Drops to $1,499.99 Only at Best Buy – IGN Southeast Asia

    The 65″ Panasonic Z95A 4K OLED TV With MLA Technology Drops to $1,499.99 Only at Best Buy – IGN Southeast Asia

    Hospitals Under Pressure: How Technology Can Transform Operations – MedCity News

    Hospitals Under Pressure: How Technology Is Transforming Healthcare Operations

    Novidea Global Survey Reveals 73% of Insurance Executives Plan to Change Core Insurance Management Technology Over the Next Three Years – markets.businessinsider.com

    Nearly Three-Quarters of Insurance Executives Plan Major Overhaul of Core Management Technology Within Three Years

    Senator Schmitt Emphasizes Need to Strengthen, Update Cybersecurity Technology – Senator Schmitt (.gov)

    Senator Schmitt Urges Immediate Action to Strengthen Cybersecurity Technology

    CliniComp Named a Top 50 Healthcare Technology Company by The Healthcare Technology Report for Second Consecutive Year – PR Newswire

    CliniComp Named a Top 50 Healthcare Technology Company by The Healthcare Technology Report for Second Consecutive Year – PR Newswire

    Five Veterinary Platforms Transforming Europe’s Clinics with AI and Cloud Technology – gritdaily.com

    Five Veterinary Platforms Transforming Europe’s Clinics with AI and Cloud Innovation

    Trending Tags

    • Nintendo Switch
    • CES 2017
    • Playstation 4 Pro
    • Mark Zuckerberg
No Result
View All Result
Earth-News
No Result
View All Result
Home Technology

Chinese snoops use F5, ConnectWise bugs to sell access into top US, UK networks

March 23, 2024
in Technology
Chinese snoops use F5, ConnectWise bugs to sell access into top US, UK networks
Share on FacebookShare on Twitter

Chinese spies exploited a couple of critical-severity bugs in F5 and ConnectWise equipment earlier this year to sell access to compromised US defense organizations, UK government agencies, and hundreds of other entities, according to Mandiant.

The Google-owned threat hunters said they assess, “with moderate confidence,” that a crew they track as UNC5174 was behind the exploitation of CVE-2023-46747, a 9.8-out-of-10-CVSS-rated remote code execution bug in the F5 BIG-IP Traffic Management User Interface, and CVE-2024-1709, a path traversal flaw in ConnectWise ScreenConnect that scored a perfect 10 out of 10 CVSS severity rating.

UNC5174 uses the online persona Uteus, and has bragged about its links to China’s Ministry of State Security (MSS) – boasts that may well be true. The gang focuses on gaining initial access into victim organizations and then reselling access to valuable targets.

During the course of its investigation into the F5 and ConnectWise exploits, Mandiant found UNC5174 could indeed be working as a contractor for MSS as an initial access broker.

“The actor claimed MSS affiliation in dark web forums, claiming tacit backing of an unspecified MSS-related APT actor,” Mandiant’s Michael Raggi, Adam Aprahamian, Dan Kelly, Mathew Potaczek, Marcin Siedlarz, and Austin Larsen wrote in a Thursday threat-intel report. 

“Additionally, the impacted organizations targeted by UNC5174, including US defense and UK government entities, were targeted concurrently by distinct known MSS access brokers UNC302, which were previously indicted by the US Department of Justice in 2020,” the team added.

The Chinese crew uses custom software, as well as a remote command-and-control (C2) framework dubbed SUPERSHELL, to exploit F5’s BIG-IP bug in October and hijack devices from across the internet. After abusing this flaw to break into a host of networks, UNC5174 then tried to sell access to US defense contractor appliances, UK government entities, and institutions in Asia, it’s claimed.

Just last month, Mandiant noticed the same combination of tools, believed to be unique to this particular Chinese gang, being used to exploit the ConnectWise flaw and compromise “hundreds” or entities, mostly in the US and Canada.

Critical vulnerability in F5 BIG-IP under active exploitation

F5 hurriedly squashes BIG-IP remote code execution bug

Five Eyes tell critical infra orgs: Take these actions now to protect against China’s Volt Typhoon

Forget TikTok – Chinese spies want to steal IP by backdooring digital locks

Also between October 2023 and February 2024, UNC5174 exploited CVE-2023-22518 in Atlassian Confluence, CVE-2022-0185 in Linux kernels, and CVE-2022-3052, a Zyxel Firewall OS command injection vulnerability, according to Mandiant.

These campaigns included “extensive reconnaissance, web application fuzzing, and aggressive scanning for vulnerabilities on internet-facing systems belonging to prominent universities in the US, Oceania, and Hong Kong regions,” the threat intel team noted. 

The Beijing-backed attacker also apparently targeted think tanks in the US and Taiwan, but Mandiant says it doesn’t have enough evidence to determine successful exploitation.

After gaining access to their victims, the espionage crew creates admin accounts to run malicious commands after elevating privileges. This includes running a 64-bit ELF downloader Mandiant named SNOWLIGHT.

SNOWLIGHT, which is written in C and runs on Linux systems, brings Golang-based backdoors GOHEAVY and GOREVERSE onto compromised appliances. This allows miscreants to get in via reverse SSH shells, connect with the C2 infrastructure hosting SUPERSHELL, and download and execute more malicious code.

“China-nexus actors continue to conduct vulnerability research on widely deployed edge appliances like F5 BIG-IP and ScreenConnect to enable espionage operations at scale,” Mandiant warns.

UNC5174 in particular continues to pose a threat to “targets of strategic or political interest to the PRC,” the threat hunters said. Specifically, this includes academic, government, and NGO groups in the US, UK, Canada, Southeast Asia and Hong Kong.

See the Mandiant reports for indicators of compromise and other useful details for network defenders. ®

>>> Read full article>>>
Copyright for syndicated content belongs to the linked Source : The Register – https://go.theregister.com/feed/www.theregister.com/2024/03/22/china_f5_connectwise_unc5174/

Tags: Chinesesnoopstechnology
Previous Post

A ‘Devil Comet’ Is Coming for the Solar Eclipse

Next Post

Labor watchdog wants SpaceX’s gag clauses to disintegrate like its exploding rockets

Evolutionary Ecology of Software Reveals How Constraints and Innovation Drive Complex System Trajectories – Quantum Zeitgeist

Evolutionary Ecology of Software Reveals How Constraints and Innovation Drive Complex System Trajectories – Quantum Zeitgeist

December 5, 2025
“Exceptional” 5.5-Million-Light-Year-Long Cosmic Structure May Be Largest Rotating Structure Ever Identified – IFLScience

“Exceptional” 5.5-Million-Light-Year-Long Cosmic Structure May Be Largest Rotating Structure Ever Identified – IFLScience

December 5, 2025
Winsights.Life Aims to Bridge the Gap Between Patients’ Narratives and Science – USA Today

How Winsights.Life Connects Patients’ Stories with Groundbreaking Scientific Research

December 5, 2025
Type 2 Diabetes can be prevented with lifestyle changes; what to know – FOX6 News Milwaukee

Take Control: Essential Lifestyle Changes to Prevent Type 2 Diabetes

December 5, 2025
The 65″ Panasonic Z95A 4K OLED TV With MLA Technology Drops to $1,499.99 Only at Best Buy – IGN Southeast Asia

The 65″ Panasonic Z95A 4K OLED TV With MLA Technology Drops to $1,499.99 Only at Best Buy – IGN Southeast Asia

December 5, 2025
Missouri sports betting market officially launched: Get $3,000 in sportsbook sign-up bonuses now – CBS Sports

Missouri Sports Betting Market Officially Launches – Claim Up to $3,000 in Sign-Up Bonuses Today!

December 4, 2025
How does the 2026 World Cup work? Format, tiebreakers, more – ESPN

Everything You Need to Know About the 2026 World Cup: Format, Tiebreakers, and More

December 4, 2025
After years of leading the nation, Colorado’s economy shows signs of cooling – Colorado Politics

After Years of Leading the Nation, Colorado’s Economy Starts to Slow Down

December 4, 2025
12TH ANNUAL WOMEN IN ENTERTAINMENT RETURNS TO DIGNITY HEALTH SPORTS PARK ON DECEMBER 11 – Dignity Health Sports Park

12th Annual Women in Entertainment Event Makes a Grand Return to Dignity Health Sports Park on December 11

December 4, 2025
Behavioral Health Resources Pays $1.1 Million to Settle Data Breach Lawsuit – The HIPAA Journal

Behavioral Health Resources Settles Data Breach Lawsuit for $1.1 Million

December 4, 2025

Categories

Archives

December 2025
M T W T F S S
1234567
891011121314
15161718192021
22232425262728
293031  
« Nov    
Earth-News.info

The Earth News is an independent English-language daily published Website from all around the World News

Browse by Category

  • Business (20,132)
  • Ecology (953)
  • Economy (972)
  • Entertainment (21,847)
  • General (18,558)
  • Health (10,011)
  • Lifestyle (983)
  • News (22,149)
  • People (977)
  • Politics (984)
  • Science (16,186)
  • Sports (21,473)
  • Technology (15,953)
  • World (959)

Recent News

Evolutionary Ecology of Software Reveals How Constraints and Innovation Drive Complex System Trajectories – Quantum Zeitgeist

Evolutionary Ecology of Software Reveals How Constraints and Innovation Drive Complex System Trajectories – Quantum Zeitgeist

December 5, 2025
“Exceptional” 5.5-Million-Light-Year-Long Cosmic Structure May Be Largest Rotating Structure Ever Identified – IFLScience

“Exceptional” 5.5-Million-Light-Year-Long Cosmic Structure May Be Largest Rotating Structure Ever Identified – IFLScience

December 5, 2025
  • About
  • Advertise
  • Privacy & Policy
  • Contact

© 2023 earth-news.info

No Result
View All Result

© 2023 earth-news.info

No Result
View All Result

© 2023 earth-news.info

Go to mobile version