* . *
  • About
  • Advertise
  • Privacy & Policy
  • Contact
Sunday, June 29, 2025
Earth-News
  • Home
  • Business
  • Entertainment
    Susquehanna Raises Penn Entertainment Inc. (PENN) Price Target. – Yahoo Finance

    Susquehanna Raises Price Target for Penn Entertainment Inc. (PENN)

    George Lopez is coming to Spokane – KXLY.com

    George Lopez is coming to Spokane – KXLY.com

    Netflix unveils Dallas immersive venue for fans of hit shows like ‘Squid Game,’ ‘Stranger Things’ – Houston Chronicle

    Step Inside Netflix’s New Dallas Immersive Experience Featuring Hits Like ‘Squid Game’ and ‘Stranger Things

    ‘Puttin’ on the Ritz’: Civic Players bring ‘Young Frankenstein’ to life – Yahoo

    Civic Players Deliver a Hilarious and Unforgettable Performance of ‘Young Frankenstein

    ‘Wheel of Fortune’: Amputee Wins $60,000 After Breaking Incredible ‘Curse’ – Hastings Tribune

    Wheel of Fortune’ Amputee Breaks Incredible ‘Curse’ to Win $60,000!

    North Star Sports & Entertainment Network: Coming soon – KTTC News

    North Star Sports & Entertainment Network: Coming soon – KTTC News

  • General
  • Health
  • News

    Cracking the Code: Why China’s Economic Challenges Aren’t Shaking Markets, Unlike America’s” – Bloomberg

    Trump’s Narrow Window to Spread the Truth About Harris

    Trump’s Narrow Window to Spread the Truth About Harris

    Israel-Gaza war live updates: Hamas leader Ismail Haniyeh assassinated in Iran, group says

    Israel-Gaza war live updates: Hamas leader Ismail Haniyeh assassinated in Iran, group says

    PAP Boss to Niger Delta Youths, Stay Away from the Protest

    PAP Boss to Niger Delta Youths, Stay Away from the Protest

    Court Restricts Protests In Lagos To Freedom, Peace Park

    Court Restricts Protests In Lagos To Freedom, Peace Park

    Fans React to Jazz Jennings’ Inspiring Weight Loss Journey

    Fans React to Jazz Jennings’ Inspiring Weight Loss Journey

    Trending Tags

    • Trump Inauguration
    • United Stated
    • White House
    • Market Stories
    • Election Results
  • Science
  • Sports
  • Technology
    Mirrors in space and underwater curtains: can technology buy us enough time to save the Arctic ice caps? – The Guardian

    Can Technology Like Space Mirrors and Underwater Curtains Buy Us Time to Save the Arctic Ice Caps?

    Naples restaurant owner prepares for hurricane season with new flood technology – Fox4Now.com

    Naples restaurant owner prepares for hurricane season with new flood technology – Fox4Now.com

    Emerging Memory and Storage Technology Market Analysis Report 2025-2034 | AI and HPC Boom Fuels Surging Demand for Fast, Low-Power Memory Devices – Yahoo Finance

    How AI and HPC Are Driving Explosive Growth in Fast, Low-Power Memory Technologies Through 2034

    Ostin Technology (OST): Volatility’s Warning or Contrarian Opportunity? – AInvest

    Ostin Technology (OST): Navigating Market Volatility – Red Flag or Hidden Opportunity?

    St. Francis Medical Center brings advanced robotic surgery technology to Northeast Louisiana – KNOE

    St. Francis Medical Center brings advanced robotic surgery technology to Northeast Louisiana – KNOE

    Wayve Expands Engineering Leadership to Power Next-Gen Autonomous Driving Technology – Silicon Canals

    Wayve Boosts Engineering Leadership to Accelerate Next-Gen Autonomous Driving Innovation

    Trending Tags

    • Nintendo Switch
    • CES 2017
    • Playstation 4 Pro
    • Mark Zuckerberg
No Result
View All Result
  • Home
  • Business
  • Entertainment
    Susquehanna Raises Penn Entertainment Inc. (PENN) Price Target. – Yahoo Finance

    Susquehanna Raises Price Target for Penn Entertainment Inc. (PENN)

    George Lopez is coming to Spokane – KXLY.com

    George Lopez is coming to Spokane – KXLY.com

    Netflix unveils Dallas immersive venue for fans of hit shows like ‘Squid Game,’ ‘Stranger Things’ – Houston Chronicle

    Step Inside Netflix’s New Dallas Immersive Experience Featuring Hits Like ‘Squid Game’ and ‘Stranger Things

    ‘Puttin’ on the Ritz’: Civic Players bring ‘Young Frankenstein’ to life – Yahoo

    Civic Players Deliver a Hilarious and Unforgettable Performance of ‘Young Frankenstein

    ‘Wheel of Fortune’: Amputee Wins $60,000 After Breaking Incredible ‘Curse’ – Hastings Tribune

    Wheel of Fortune’ Amputee Breaks Incredible ‘Curse’ to Win $60,000!

    North Star Sports & Entertainment Network: Coming soon – KTTC News

    North Star Sports & Entertainment Network: Coming soon – KTTC News

  • General
  • Health
  • News

    Cracking the Code: Why China’s Economic Challenges Aren’t Shaking Markets, Unlike America’s” – Bloomberg

    Trump’s Narrow Window to Spread the Truth About Harris

    Trump’s Narrow Window to Spread the Truth About Harris

    Israel-Gaza war live updates: Hamas leader Ismail Haniyeh assassinated in Iran, group says

    Israel-Gaza war live updates: Hamas leader Ismail Haniyeh assassinated in Iran, group says

    PAP Boss to Niger Delta Youths, Stay Away from the Protest

    PAP Boss to Niger Delta Youths, Stay Away from the Protest

    Court Restricts Protests In Lagos To Freedom, Peace Park

    Court Restricts Protests In Lagos To Freedom, Peace Park

    Fans React to Jazz Jennings’ Inspiring Weight Loss Journey

    Fans React to Jazz Jennings’ Inspiring Weight Loss Journey

    Trending Tags

    • Trump Inauguration
    • United Stated
    • White House
    • Market Stories
    • Election Results
  • Science
  • Sports
  • Technology
    Mirrors in space and underwater curtains: can technology buy us enough time to save the Arctic ice caps? – The Guardian

    Can Technology Like Space Mirrors and Underwater Curtains Buy Us Time to Save the Arctic Ice Caps?

    Naples restaurant owner prepares for hurricane season with new flood technology – Fox4Now.com

    Naples restaurant owner prepares for hurricane season with new flood technology – Fox4Now.com

    Emerging Memory and Storage Technology Market Analysis Report 2025-2034 | AI and HPC Boom Fuels Surging Demand for Fast, Low-Power Memory Devices – Yahoo Finance

    How AI and HPC Are Driving Explosive Growth in Fast, Low-Power Memory Technologies Through 2034

    Ostin Technology (OST): Volatility’s Warning or Contrarian Opportunity? – AInvest

    Ostin Technology (OST): Navigating Market Volatility – Red Flag or Hidden Opportunity?

    St. Francis Medical Center brings advanced robotic surgery technology to Northeast Louisiana – KNOE

    St. Francis Medical Center brings advanced robotic surgery technology to Northeast Louisiana – KNOE

    Wayve Expands Engineering Leadership to Power Next-Gen Autonomous Driving Technology – Silicon Canals

    Wayve Boosts Engineering Leadership to Accelerate Next-Gen Autonomous Driving Innovation

    Trending Tags

    • Nintendo Switch
    • CES 2017
    • Playstation 4 Pro
    • Mark Zuckerberg
No Result
View All Result
Earth-News
No Result
View All Result
Home Technology

China’s APT40 gang is ready to attack vulns within hours or days of public release

July 9, 2024
in Technology
China’s APT40 gang is ready to attack vulns within hours or days of public release
Share on FacebookShare on Twitter

Law enforcement agencies from eight nations, led by Australia, have issued an advisory that details the tradecraft used by China-aligned threat actor APT40 – aka Kryptonite Panda, GINGHAM TYPHOON, Leviathan and Bronze Mohawk – and found it prioritizes developing exploits for newly found vulnerabilities and can target them within hours.

The advisory describes APT40 as a “state-sponsored cyber group” and the People’s Republic of China (PRC) as that sponsor. The agencies that authored the advisory – which come from Australia, the US, Canada, New Zealand, Japan, South Korea, the UK, and Germany – believe APT40 “conducts malicious cyber operations for the PRC Ministry of State Security (MSS).”

Development of the advisory was led by Australia, because the Cyber Security Centre (ACSC) at the nation’s Signals Directorate was made aware in 2022 of an APT40 attack on an unidentified local organization.

The ACSC secured the victim org’s permission and “deployed host-based sensors to likely affected hosts on the organization’s network.” Info that flowed from those sensors allowed ACSC incident response analysts to map APT40 activities.

The advisory is the result, and suggests that APT40 “possesses the capability to rapidly transform and adapt exploit proof-of-concept(s) (POCs) of new vulnerabilities and immediately utilize them against target networks possessing the infrastructure of the associated vulnerability.” The gang also watches networks of interest to look for unpatched targets.

China-linked APT40 gang targets wind farms, Australian government

Oh no Xi didn’t?! China’s hackers nick naval tech blueprints, diddle with foreign elections to boost trade – new claim

New Zealand to world: China attacked us, too!

Paying for WinRAR in all the wrong ways – Russia and China hitting ancient app

“This regular reconnaissance postures the group to identify vulnerable, end-of-life or no longer maintained devices on networks of interest, and to rapidly deploy exploits,” the advisory warns.

Those efforts yield results, because some systems have not been patched for problems identified as long ago as 2017. Some of the vulns APT40 targets are old news – Log4J (CVE 2021 44228), Atlassian Confluence (CVE-2021-31207, CVE-2021- 26084). and Microsoft Exchange (CVE-2021-31207, CVE 2021-34523, CVE-2021-34473) are high on the hit list.

To target its victims, APT40 appears to go looking for a device at an unrelated entity, to use as a launching point. In the case of the attack observed by the ACSC, that device was probably located at a small business or home. That device probes a target using tactics that make the attack appear to be part of legitimate traffic.

“APT40 has embraced the global trend of using compromised devices, including small-office/home-office (SOHO) devices, as operational infrastructure and last-hop redirectors for its operations in Australia,” the advisory observes. “Many of these SOHO devices are end-of-life or unpatched and offer a soft target for N-day exploitation.”

Popping SOHO boxes has, however, “enabled the authoring agencies to better characterize and track this group’s movements.”

And those movements see the group use web shells and search for valid user credentials that allow it to achieve persistent access.

Malware is eventually installed, with exfiltration of info the aim.

The advisory outlines mitigation tactics that are said to offer decent defences against APT40. They’re not rocket science: logging, patch management, and network segmentation are all listed.

So are multifactor authentication, disabling unused network services, use of web application firewalls, least privilege access, and replacement of end-of-life equipment.

The advisory also lists and links to ten samples of malware deployed by APT4, and includes two case studies. The latter documents are, however, now old enough that the victims’ IT estates have been remediated – APT40 may well have moved on to other tactics since. ®

>>> Read full article>>>
Copyright for syndicated content belongs to the linked Source : The Register – https://go.theregister.com/feed/www.theregister.com/2024/07/09/apt_40_tradecraft_advisory/

Tags: China’sReadytechnology
Previous Post

EXPLAINED: Why Indians Are Unhappy With Rohit Sharma’s New Profile Pic?

Next Post

Founder of Indian ride-share biz Ola calls for 70-hour work week

Mirrors in space and underwater curtains: can technology buy us enough time to save the Arctic ice caps? – The Guardian

Can Technology Like Space Mirrors and Underwater Curtains Buy Us Time to Save the Arctic Ice Caps?

June 29, 2025
Guirassy latest candidate for Milan attack with 70m price tag – Yahoo Sports

Guirassy Emerges as Milan’s Top Striker Target with €70 Million Price Tag

June 29, 2025
‘Half the tree of life’: ecologists’ horror as nature reserves are emptied of insects – The Guardian

Half the Tree of Life at Risk: Ecologists Warn as Insect Populations Plummet in Nature Reserves

June 29, 2025
Health, science cuts affect future jobs – The Acorn

Health, science cuts affect future jobs – The Acorn

June 29, 2025
Why Some People Have Absolutely No Sense Of Direction, According To Science – YourTango

Why Do Some People Struggle with Direction? The Surprising Science of Getting Lost

June 29, 2025
Cardiologist shares how stress and modern lifestyle are raising heart risks in 30s and 40s: ‘Don’t wait for chest pain’ | Health – Hindustan Times – Hindustan Times

Cardiologist shares how stress and modern lifestyle are raising heart risks in 30s and 40s: ‘Don’t wait for chest pain’ | Health – Hindustan Times – Hindustan Times

June 29, 2025
79-year old man competing in his 16th World Police and Fire Games – WVTM

79-year old man competing in his 16th World Police and Fire Games – WVTM

June 29, 2025
The Economy Is So Off the Rails That They’re Trying to Figure Out How to Make Ads Specifically Targeted at AI Bots – Futurism

The Economy Is So Off the Rails That They’re Trying to Figure Out How to Make Ads Specifically Targeted at AI Bots – Futurism

June 29, 2025

WATCH: Health Secretary RFK Jr. Faces Intense Questioning on Vaccine Policy and Transparency in House Hearing

June 29, 2025
Jimmy Patronis hails House passage of bill benefitting military, veterans – Florida Politics

Jimmy Patronis Cheers House Approval of Landmark Bill Backing Military and Veterans

June 29, 2025

Categories

Archives

June 2025
MTWTFSS
 1
2345678
9101112131415
16171819202122
23242526272829
30 
« May    
Earth-News.info

The Earth News is an independent English-language daily published Website from all around the World News

Browse by Category

  • Business (20,132)
  • Ecology (700)
  • Economy (723)
  • Entertainment (21,613)
  • General (15,621)
  • Health (9,762)
  • Lifestyle (728)
  • News (22,149)
  • People (724)
  • Politics (729)
  • Science (15,940)
  • Sports (21,220)
  • Technology (15,708)
  • World (703)

Recent News

Mirrors in space and underwater curtains: can technology buy us enough time to save the Arctic ice caps? – The Guardian

Can Technology Like Space Mirrors and Underwater Curtains Buy Us Time to Save the Arctic Ice Caps?

June 29, 2025
Guirassy latest candidate for Milan attack with 70m price tag – Yahoo Sports

Guirassy Emerges as Milan’s Top Striker Target with €70 Million Price Tag

June 29, 2025
  • About
  • Advertise
  • Privacy & Policy
  • Contact

© 2023 earth-news.info

No Result
View All Result

© 2023 earth-news.info

No Result
View All Result

© 2023 earth-news.info

Go to mobile version