logo

Sophos reveals 5-year battle with Chinese hackers attacking network devices

ID: e42c94d3-f0cc-5583-8337-7d09f2aeab01

STIX ID: report--e42c94d3-f0cc-5583-8337-7d09f2aeab01

Feed Name: Bleeping Computer

Threat Score
88/100

Date Published: 2024-10-31

Date Updated: 2026-04-20

Author: Lawrence Abrams

...
...

Sophos' "Pacific Rim" reports detail a multi-year series of China-linked operations that exploited zero-day and known vulnerabilities in edge networking devices to deploy bespoke implants (including a UEFI bootkit), establish operational relay proxy networks, and maintain advanced persistence; activity is attributed to Volt Typhoon, APT31, and APT41 and includes telemetry-driven hunting and countermeasures by Sophos.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.