logo

U.S. Indictments Shed Light On I-Soon Hacking Tools, Methods

ID: b24add72-cf1c-5edd-93d2-f2752bfc5b97

STIX ID: report--b24add72-cf1c-5edd-93d2-f2752bfc5b97

Feed Name: Cyble Blog

Threat Score
90/100

Date Published: 2025-10-21

Date Updated: 2026-07-16

...
...

U.S. DOJ indictments allege i‑Soon operated as a PRC-directed APT‑for‑hire from 2016–2023, using sophisticated phishing, account‑takeover, and password‑cracking platforms to breach email accounts, phones, servers, and websites of governments, defense agencies, media and other high‑value targets, selling both services and stolen data to Chinese state security bureaus.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.