Sophos reveals 5-year battle with Chinese hackers attacking network devices
ID: e42c94d3-f0cc-5583-8337-7d09f2aeab01
STIX ID: report--e42c94d3-f0cc-5583-8337-7d09f2aeab01
Feed Name: Bleeping Computer
Threat Score
Sophos' "Pacific Rim" reports detail a multi-year series of China-linked operations that exploited zero-day and known vulnerabilities in edge networking devices to deploy bespoke implants (including a UEFI bootkit), establish operational relay proxy networks, and maintain advanced persistence; activity is attributed to Volt Typhoon, APT31, and APT41 and includes telemetry-driven hunting and countermeasures by Sophos.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
