logo

How Chinese Cybercriminals Use Business Playbook to Revamp Underground

ID: 949824ba-233d-51eb-813e-790abb5c5581

STIX ID: report--949824ba-233d-51eb-813e-790abb5c5581

Feed Name: McAfee Labs Blog

Date Published: 2020-02-11

Date Updated: 2026-04-28

Author: Anne An

...
...

This report analyzes the rapid maturation of China’s cybercriminal underground, describing its shift from ad‑hoc QQ-based dealings to structured, service-oriented marketplaces offering DDoS, spam, credential and PII sales, and bespoke hacking services. It outlines distinctive practices such as AliPay/bank-transfer payments and a “master–apprentice” recruitment model, notes the move of operations overseas with crypto-enabled laundering, and underscores the growing difficulty in separating cybercrime from espionage as actors sell business dossiers and insider-enabled access targeting global organizations.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.