/
Navigation
Chronicles
Browse all articles
Explore
Semantic exploration
Research
Entity momentum
Nexus
Correlations & relationships
Story Arc
Topic evolution
Drift Map
Semantic trajectory animation
Posts
Analysis & commentary
Pulse API
Tech news intelligence API
Browse
Entities
Companies, people, products, technologies
Domains
Browse by publication source
Handles
Browse by social media handle
Detection
Concept Search
Semantic similarity search
High Impact Stories
Top coverage by position
Sentiment Analysis
Positive/negative coverage
Anomaly Detection
Unusual coverage patterns
Analysis
Rivalry Report
Compare two entities head-to-head
Semantic Pivots
Narrative discontinuities
Crisis Response
Event recovery patterns
Connected
Search: /
Command: ⌘K
Embeddings: large
TEXXR

Chronicles

The story behind the story

← → days · ↑ ↓ browse · Enter similar · o open

CrowdStrike: Chinese hacking attacks on US targets more than doubled from 2023 to 330+ incidents in 2025; US officials say China has shifted to hacking-for-hire

American officials say new economic model for offense has fueled spying attacks by government agencies that have more than doubled.

Washington Post Joseph Menn

Context & Ripple Effects

This report extends a documented shift toward state operations that increasingly draw on private-sector hacking talent, described in earlier coverage of China’s growing reliance on private hackers. It turns that evolution into a measurable rise in activity against US targets.

The pattern later broadened beyond isolated targets: a multinational warning about a telecom-focused campaign described exposure across many countries and US companies, while CrowdStrike subsequently found Chinese actors dominated reported state-sponsored attacks on technology companies and AI assets.

First-order effects

  • US-targeted organizations face a higher reported volume of Chinese-linked espionage activity, increasing the immediate burden on their security teams to detect and contain intrusions.
  • The reported hacking-for-hire model gives Chinese government agencies a larger, more flexible pool of operational capacity than a purely in-house approach.

Second-order effects

  • Telecom, technology and AI-focused organizations are likely to receive heightened defensive attention, given the later reporting on a high share of Chinese state-backed activity targeting tech companies.
  • A more outsourced operating model can complicate attribution and response: defenders and governments must account for commercially supplied capabilities alongside directly state-run operations.

Third-order effects

  • If this model persists, state-sponsored cyber competition may increasingly resemble a blended market in which government objectives are executed through private technical ecosystems rather than discrete government units.
  • The resulting pressure is toward more sustained cross-border coordination on cyber defense and attribution, especially where campaigns span critical communications networks and technology targets.

The trend: China’s reported shift toward hacking-for-hire is part of a broader blending of state cyber operations with private-sector capacity to scale espionage activity.

Discussion

  • @ericjgeller.com Eric Geller on bluesky
    China's Salt Typhoon hackers breached at least one state National Guard unit, according to a DHS intelligence memo reported by @kevincollier.bsky.social. www.nbcnews.com/tech/securit...
  • @kevincollier@mastodon.social Kevin Collier on mastodon
    New: The same elite Chinese hackers that broke into AT&T and Verizon to spy on government leaders' calls also severely compromised the National Guard in at least one state for most of last year, and potentially could have used that access to pivot to other states, Guard networks,…