threat-intel
China-Nexus Actor Spied on US Researchers Undetected for a Year
High
Summary
Google’s Threat Intelligence Group (GTIG) discovered and disrupted a year-long espionage campaign by the China-Nexus threat actor, UNC6508, targeting US academic, medical, and military research institutions. The actor utilized custom malware, ‘Infinitered,’ to steal credentials from the REDCap Web application and exfiltrate sensitive data, highlighting a surprising scope of intelligence collection focused on diverse areas including military strategy and defense technology. This campaign demonstrates an evolving tactic by China-aligned actors.
Summary written automatically in our own words from the original article, which belongs to its publisher and remains the reference. It may contain errors. Sources & data
