* . *
  • About
  • Advertise
  • Privacy & Policy
  • Contact
Thursday, November 13, 2025
Earth-News
  • Home
  • Business
  • Entertainment
    ‘The Price Is Right’ Contestant Said She ‘Manifested’ Her $100,000 Win – CBS 19 News

    ‘The Price Is Right’ Contestant Said She ‘Manifested’ Her $100,000 Win – CBS 19 News

    Billy Bob Thornton says Hollywood told him he ‘wasn’t southern enough’: ‘I am just off the turnip truck’ – Yahoo

    Billy Bob Thornton says Hollywood told him he ‘wasn’t southern enough’: ‘I am just off the turnip truck’ – Yahoo

    Nov. 13 Vallejo/Vacaville Arts/Entertainment Source: Activities – Times Herald Online

    Nov. 13 Vallejo/Vacaville Arts/Entertainment Source: Activities – Times Herald Online

    New Orleans Museum of Art director gets a French award started by Napoleon Bonaparte – NOLA.com

    New Orleans Museum of Art director gets a French award started by Napoleon Bonaparte – NOLA.com

    ‘Little House on the Prairie’ stars reunite for iconic show’s 50th anniversary – Spectrum News

    ‘Little House on the Prairie’ stars reunite for iconic show’s 50th anniversary – Spectrum News

    Die My Love to Rosalía’s Lux: your complete entertainment guide to the week ahead – The Guardian

    Die My Love to Rosalía’s Lux: your complete entertainment guide to the week ahead – The Guardian

  • General
  • Health
  • News

    Cracking the Code: Why China’s Economic Challenges Aren’t Shaking Markets, Unlike America’s” – Bloomberg

    Trump’s Narrow Window to Spread the Truth About Harris

    Trump’s Narrow Window to Spread the Truth About Harris

    Israel-Gaza war live updates: Hamas leader Ismail Haniyeh assassinated in Iran, group says

    Israel-Gaza war live updates: Hamas leader Ismail Haniyeh assassinated in Iran, group says

    PAP Boss to Niger Delta Youths, Stay Away from the Protest

    PAP Boss to Niger Delta Youths, Stay Away from the Protest

    Court Restricts Protests In Lagos To Freedom, Peace Park

    Court Restricts Protests In Lagos To Freedom, Peace Park

    Fans React to Jazz Jennings’ Inspiring Weight Loss Journey

    Fans React to Jazz Jennings’ Inspiring Weight Loss Journey

    Trending Tags

    • Trump Inauguration
    • United Stated
    • White House
    • Market Stories
    • Election Results
  • Science
  • Sports
  • Technology
    Predictive Technology Is Improving Warehouse Safety – ohsonline.com

    Predictive Technology Is Improving Warehouse Safety – ohsonline.com

    mPower Technology opens automated solar module line for space – pv magazine USA

    MPower Technology Launches Cutting-Edge Automated Solar Module Line for Space Applications

    Two Tigers land Liberty League All-Conference honors – Rochester Institute of Technology Athletics

    Two Tigers land Liberty League All-Conference honors – Rochester Institute of Technology Athletics

    Green Technology Book: Solutions for confronting climate disasters – Part 1: Water-related disasters – WIPO – World Intellectual Property Organization

    Green Technology Book: Solutions for confronting climate disasters – Part 1: Water-related disasters – WIPO – World Intellectual Property Organization

    Reimagining cybersecurity in the era of AI and quantum – MIT Technology Review

    Reimagining cybersecurity in the era of AI and quantum – MIT Technology Review

    Davis R M Inc. Has $16.67 Million Holdings in Microchip Technology Incorporated $MCHP – MarketBeat

    Davis R M Inc. Amplifies Investment with $16.67 Million Stake in Microchip Technology

    Trending Tags

    • Nintendo Switch
    • CES 2017
    • Playstation 4 Pro
    • Mark Zuckerberg
No Result
View All Result
  • Home
  • Business
  • Entertainment
    ‘The Price Is Right’ Contestant Said She ‘Manifested’ Her $100,000 Win – CBS 19 News

    ‘The Price Is Right’ Contestant Said She ‘Manifested’ Her $100,000 Win – CBS 19 News

    Billy Bob Thornton says Hollywood told him he ‘wasn’t southern enough’: ‘I am just off the turnip truck’ – Yahoo

    Billy Bob Thornton says Hollywood told him he ‘wasn’t southern enough’: ‘I am just off the turnip truck’ – Yahoo

    Nov. 13 Vallejo/Vacaville Arts/Entertainment Source: Activities – Times Herald Online

    Nov. 13 Vallejo/Vacaville Arts/Entertainment Source: Activities – Times Herald Online

    New Orleans Museum of Art director gets a French award started by Napoleon Bonaparte – NOLA.com

    New Orleans Museum of Art director gets a French award started by Napoleon Bonaparte – NOLA.com

    ‘Little House on the Prairie’ stars reunite for iconic show’s 50th anniversary – Spectrum News

    ‘Little House on the Prairie’ stars reunite for iconic show’s 50th anniversary – Spectrum News

    Die My Love to Rosalía’s Lux: your complete entertainment guide to the week ahead – The Guardian

    Die My Love to Rosalía’s Lux: your complete entertainment guide to the week ahead – The Guardian

  • General
  • Health
  • News

    Cracking the Code: Why China’s Economic Challenges Aren’t Shaking Markets, Unlike America’s” – Bloomberg

    Trump’s Narrow Window to Spread the Truth About Harris

    Trump’s Narrow Window to Spread the Truth About Harris

    Israel-Gaza war live updates: Hamas leader Ismail Haniyeh assassinated in Iran, group says

    Israel-Gaza war live updates: Hamas leader Ismail Haniyeh assassinated in Iran, group says

    PAP Boss to Niger Delta Youths, Stay Away from the Protest

    PAP Boss to Niger Delta Youths, Stay Away from the Protest

    Court Restricts Protests In Lagos To Freedom, Peace Park

    Court Restricts Protests In Lagos To Freedom, Peace Park

    Fans React to Jazz Jennings’ Inspiring Weight Loss Journey

    Fans React to Jazz Jennings’ Inspiring Weight Loss Journey

    Trending Tags

    • Trump Inauguration
    • United Stated
    • White House
    • Market Stories
    • Election Results
  • Science
  • Sports
  • Technology
    Predictive Technology Is Improving Warehouse Safety – ohsonline.com

    Predictive Technology Is Improving Warehouse Safety – ohsonline.com

    mPower Technology opens automated solar module line for space – pv magazine USA

    MPower Technology Launches Cutting-Edge Automated Solar Module Line for Space Applications

    Two Tigers land Liberty League All-Conference honors – Rochester Institute of Technology Athletics

    Two Tigers land Liberty League All-Conference honors – Rochester Institute of Technology Athletics

    Green Technology Book: Solutions for confronting climate disasters – Part 1: Water-related disasters – WIPO – World Intellectual Property Organization

    Green Technology Book: Solutions for confronting climate disasters – Part 1: Water-related disasters – WIPO – World Intellectual Property Organization

    Reimagining cybersecurity in the era of AI and quantum – MIT Technology Review

    Reimagining cybersecurity in the era of AI and quantum – MIT Technology Review

    Davis R M Inc. Has $16.67 Million Holdings in Microchip Technology Incorporated $MCHP – MarketBeat

    Davis R M Inc. Amplifies Investment with $16.67 Million Stake in Microchip Technology

    Trending Tags

    • Nintendo Switch
    • CES 2017
    • Playstation 4 Pro
    • Mark Zuckerberg
No Result
View All Result
Earth-News
No Result
View All Result
Home Technology

Chinese spies target vulnerable home office kit to run cyber attacks

July 10, 2024
in Technology
Chinese spies target vulnerable home office kit to run cyber attacks
Share on FacebookShare on Twitter

China’s APT40 is ramping up targeting of victims using vulnerable small and home office networking kit as command and control infrastructure, according to an international alert


Alex Scroxton

By

Alex Scroxton,
Security Editor

Published: 09 Jul 2024 16:57

The China-backed advanced persistent threat (APT) actor tracked as APT40 has been busy evolving its playbook and has recently been observed actively targeting new victims by exploiting vulnerabilities in small office and home office (SoHo) networking devices as a staging post for command and control (C2) activity during their attacks

This is according to an international alert issued by the Five Eyes allied cyber agencies from Australia, Canada, New Zealand, the UK and the US, as well as partner bodies from Germany, Japan and South Korea.

According to the Australian Cyber Security Centre (ACSC), which was the lead agency on the alert, APT40 has repeatedly targeted networks both in Australia and around the world by this method.

In two case studies published by the Australian authorities, APT40 used compromised SoHO devices as operational infrastructure and “last-hop” redirectors during its attacks, although one effect of doing so has been to make their activity somewhat easier to characterise and track.

The agencies described such SoHo networking devices as much easier targets for malicious actors than their large enterprise equivalents.

“Many of these SoHO devices are end-of-life or unpatched and offer a soft target for N-day exploitation,” the Australians said. “Once compromised, SoHO devices offer a launching point for attacks to blend in with legitimate traffic and challenge network defenders.

“This technique is also regularly used by other PRC state-sponsored actors worldwide, and the authoring agencies consider this to be a shared threat.

“APT40 does occasionally use procured or leased infrastructure as victim-facing C2 infrastructure in its operations; however, this tradecraft appears to be in relative decline,” they added.

The ACSC shared details of one APT40 cyber attack to which it responded in August 2022, during which a malicious IP believed to be affiliated with the group interacted with the targeted organisation’s network over a two-month period using a device that likely belonged to a small business or home user. This attack was remediated before APT40 could do too much damage.

Mohammad Kazem, senior threat intelligence researcher at WithSecure, said: “There is no indication that the pace or impact of Chinese government/state-sponsored cyber operations has fallen… instead they have continued to hone and refine their tradecraft. They have shown themselves willing to retire methods and tools that no longer work in favour of new ones, but while their standard TTPs have proved effective, they have happily continued to use them.

“This advisory also highlights a shared and growing trend among PRC actors in recent years to target edge devices via exploitation and leverage compromised devices as part of their network infrastructure and activity. We believe these techniques are consciously employed by these actors to pursue stealthier operations that are more difficult to track and attribute, but also challenge conventional security mechanisms and oversight,” said Kazem.

Noteworthy threat

The APT40 group – which is also known in various supplier matrices as Kryptonite Panda, Gingham Typhoon, Leviathan and Bronze Mohawk – is a highly active group that is likely based in the city of Haikou in Hainan Province, an island off the south coast of China, about 300 miles west of Hong Kong. It receives its tasking from the Hainan State Security Department of China’s Ministry of State Security (MSS).

It was likely one of a number of APTs involved in a 2021 series of cyber attacks orchestrated via compromises in Microsoft Exchange Server. In July of that year, four members of the group were indicted by the US authorities over attacks targeting the aviation, defence, education, government, healthcare, biopharmaceutical and maritime sectors.

This campaign saw APT40 steal intellectual property on submersible and autonomous vehicles, chemical formulae, commercial aircraft servicing, genetic sequencing tech, research on diseases including Ebola, HIV/AIDS and MERS, and information to support attempts to win contracts for China’s state-owned enterprises.

APT40 is considered a particularly noteworthy threat thanks to its advanced capabilities – it is able to quickly transform and exploit proof-of-concepts (PoCs) of new vulnerabilities and turn them on victims, and its team members conduct regular reconnaissance against networks of interest looking for opportunities to use them.

It has been an enthusiastic user of some of the most widespread and notable vulnerabilities of the past few years, including the likes of Log4j – indeed, it continues to find success exploiting some bugs that date as far back as 2017.

The group seems to favour targeting public-facing infrastructure over techniques that require user interaction – such as phishing via email – and places great value on obtaining valid credentials to use in its attacks.

Mitigating an APT40 intrusion

Priority mitigations for defenders include keeping up to date logging, prompt patch management and implementing network segmentation.

Security teams should also take steps to disable unused or unneeded network services, ports or firewalls, implement web application firewalls (WAFs), enforce least privilege policies to limit access, enforce multifactor authentication (MFA) on all internet accessible remote access services, replace end-of-life kit, and review custom applications for potentially exploitable functionality.

Read more on Hackers and cybercrime prevention


U.S. agencies continue to observe Volt Typhoon intrusions

ArielleWaldman

By: Arielle Waldman


Mandiant upgrades Sandworm to APT44 due to increasing threat

ArielleWaldman

By: Arielle Waldman


advanced persistent threat (APT)

KinzaYasar

By: Kinza Yasar


Cozy Bear hijacks SME Microsoft 365 tenants in latest campaign

AlexScroxton

By: Alex Scroxton

>>> Read full article>>>
Copyright for syndicated content belongs to the linked Source : Computer Weekly – https://www.computerweekly.com/news/366592858/Chinese-spies-target-vulnerable-home-office-kit-to-run-cyber-attacks

Tags: Chinesespiestechnology
Previous Post

Computing curriculum leaving digital skills behind, research suggests

Next Post

Hyper-V zero-day stands out on a busy Patch Tuesday

This Vegan ‘Steak’ Recipe Has Fans Calling Cauliflower ‘Anything but Boring’ – Yahoo

This Vegan ‘Steak’ Recipe Has Fans Calling Cauliflower ‘Anything but Boring’ – Yahoo

November 13, 2025
Predictive Technology Is Improving Warehouse Safety – ohsonline.com

Predictive Technology Is Improving Warehouse Safety – ohsonline.com

November 13, 2025
Prep Sports Report: Cooper will face familiar opponent in second round of Class 5A football playoffs – NKyTribune

Prep Sports Report: Cooper will face familiar opponent in second round of Class 5A football playoffs – NKyTribune

November 13, 2025
Nine Emory faculty recognized among world’s most influential researchers in 2025 | Emory University | Atlanta GA – Emory University

Nine Emory Faculty Named Among the World’s Most Influential Researchers in 2025

November 13, 2025
Trump Dismisses Economic Anxiety at His Own Peril – National Review

Trump Dismisses Economic Warnings-A Risk That Could Backfire

November 13, 2025
‘The Price Is Right’ Contestant Said She ‘Manifested’ Her $100,000 Win – CBS 19 News

‘The Price Is Right’ Contestant Said She ‘Manifested’ Her $100,000 Win – CBS 19 News

November 13, 2025
Louisiana health system CEO named to AHA Board of Trustees – American Hospital Association

Louisiana Health System CEO Earns Coveted Spot on Prestigious AHA Board of Trustees

November 13, 2025
Jack Schlossberg, Scion of the Kennedy Family, Gives Politics a Try – The New York Times

Jack Schlossberg, Kennedy Family Heir, Launches His Political Journey

November 13, 2025
Plant traits and associated ecological data from Afromontane grasslands of Maloti-Drakensberg, South Africa – Nature

Plant traits and associated ecological data from Afromontane grasslands of Maloti-Drakensberg, South Africa – Nature

November 12, 2025
L’Oréal USA Announces 2025 For Women in Science Awardees, Underscoring Commitment to Advancing Careers in STEM – PR Newswire

L’Oréal USA Announces 2025 Women in Science Awardees, Celebrating the Future of Women in STEM

November 12, 2025

Categories

Archives

November 2025
M T W T F S S
 12
3456789
10111213141516
17181920212223
24252627282930
« Oct    
Earth-News.info

The Earth News is an independent English-language daily published Website from all around the World News

Browse by Category

  • Business (20,132)
  • Ecology (916)
  • Economy (937)
  • Entertainment (21,810)
  • General (18,149)
  • Health (9,976)
  • Lifestyle (948)
  • News (22,149)
  • People (938)
  • Politics (948)
  • Science (16,149)
  • Sports (21,437)
  • Technology (15,917)
  • World (922)

Recent News

This Vegan ‘Steak’ Recipe Has Fans Calling Cauliflower ‘Anything but Boring’ – Yahoo

This Vegan ‘Steak’ Recipe Has Fans Calling Cauliflower ‘Anything but Boring’ – Yahoo

November 13, 2025
Predictive Technology Is Improving Warehouse Safety – ohsonline.com

Predictive Technology Is Improving Warehouse Safety – ohsonline.com

November 13, 2025
  • About
  • Advertise
  • Privacy & Policy
  • Contact

© 2023 earth-news.info

No Result
View All Result

© 2023 earth-news.info

No Result
View All Result

© 2023 earth-news.info

Go to mobile version