Countering Chinese State-Sponsored Actors Compromise of Networks Worldwide to Feed Global Espionage System
ID: c1127caa-c744-56c1-94d3-3231c7b9e18e
STIX ID: report--c1127caa-c744-56c1-94d3-3231c7b9e18e
Feed Name: CISA Cybersecurity Advisories
People’s Republic of China state-sponsored APT actors are conducting widespread, long-term intrusions against global telecommunications, ISP, and related networks by exploiting known CVEs on edge/network devices, modifying router configurations (ACLs, tunnels, SPAN/ERSPAN), running on-box containers for staging and evasion, and exfiltrating data via peering/tunnels; the advisory provides observed TTPs, IOCs (IP lists, SFTP binaries with hashes, Yara/Snort rules), and comprehensive detection and mitigation recommendations for network defenders.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
