FireEye says that between January 20 and March 11 Chinese actor APT41 attempted to exploit bugs in Citrix and Zoho products at organizations in 20+ countries
FireEye
Related Coverage
- China-Based Threat Group Launches Widespread Malicious Campaign Dark Reading
- Chinese hackers hit Citrix, Cisco vulnerabilities in sweeping campaign CyberScoop
- U.S. cybersecurity experts see recent spike in Chinese digital espionage Reuters
- Chinese Hackers Use Cisco, Citrix, Zoho Exploits In Targeted Attacks BleepingComputer
- China Suspected In Surge Of US Cyberattacks PYMNTS.com
- Chinese hacker group APT41 uses recent exploits to target companies worldwide ITworld.com
- Attacks from Chinese hacking group have spiked, U.S. firm says Digital Trends
- Chinese Hackers Attacked Foreign Health Care, Military, Oil Networks as Coronavirus Hit China Nextgov
- Chinese Hackers Exploit Cisco, Citrix Flaws in Massive Espionage Campaign Threatpost
- China's APT41 Exploited Citrix, Cisco, ManageEngine Flaws in Global Campaign SecurityWeek
Discussion
-
@file411
@file411
on x
Watch this space “Between January 20 and March 11, FireEye observed APT41 attempt to exploit vulnerabilities in Citrix NetScaler/ADC, Cisco routers, and Zoho ManageEngine Desktop Central at over 75 FireEye customers.” cc @burgessct @SlickRockWeb @IdeaGov https://www.fireeye.com/.…
-
@file411
@file411
on x
Fallow period that's a factor that can't be emphasized enough “We did not observe APT41 activity at FireEye customers between February 2 and February 19, 2020. China initiated COVID-19 related quarantines in cities in Hubei province...” Wait fooooor eeet https://www.fireeye.com/.…
-
@file411
@file411
on x
I might be getting over my skis but the fact APT-41 “split” re Cisco Exploit. What's one of Cisco's flagship products? I'll give you a hint: W-E-B-E-X I could be wrong - could that be the “reason” for the split? But that's way above my pay grade https://www.fireeye.com/... https:…
-
@fireeye
@fireeye
on x
We observed #APT41 carry out one of the broadest campaigns by a Chinese #cyberespionage actor in recent years as they attempted to exploit multiple vulnerabilities at over 75 of our customers around the globe. Learn about the attempted intrusions: http://r.socialstudio.radian6.co…
-
@ericgeller
Eric Geller
on x
Since late January, China-linked hackers have used a range of vulnerabilities in routers and software to conduct “one of the most widespread campaigns” by Beijing's operatives in recent years, according to a new FireEye report. https://www.fireeye.com/...
-
@shanvav
Shannon Vavra
on x
Earlier this year state-backed Chinese hackers embarked on one of the most sweeping Chinese espionage efforts @FireEye has seen in years: 75 orgs, over a dozen sectors (gov/telco/defense/more), likely using custom malware at times I'm told @CyberScoopNews https://www.cyberscoop.c…