CISA, FBI, NSA Warn of Chinese 'Global Espionage System'
ID: 96bab1cb-421c-5fcc-b480-77c1e5054f22
STIX ID: report--96bab1cb-421c-5fcc-b480-77c1e5054f22
Feed Name: Dark Reading
This advisory reports that China-backed APTs, including Salt Typhoon, have been conducting global espionage against telecommunications, government, transportation, lodging, and defense networks by exploiting publicly known vulnerabilities in routers and network devices (e.g., CVE-2024-21887, CVE-2024-3400, CVE-2023-20273) to modify device configurations, maintain persistent access, capture network traffic, and pre-position for potential disruption; the joint guidance lists TTPs, IOCs, and recommended mitigations for defenders.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
