threat-intel Chinese and Russian spies stepping up cyberattacks, German companies report German companies are increasingly experiencing cyberattacks, primarily attributed to foreign intelligence services, particularly from China and Russia. The number of incidents linked to these agencies has significantly risen, alongside substantial economic losses for German businesses due to cybercrime. The lines betwe… The Record · 3d ago High CHRUIRcyberattackintelligencedata breach
threat-intel FBI seizes hacking tools it says China used to attack NASA, DOE, US Senate and other critical networks The FBI has seized hacking tools believed to have been used by Chinese state actors to target critical US infrastructure, including NASA, the Department of Energy, and the US Senate. These tools were used to conduct reco… The Register · 3d ago High CVE-2019-11510CVE-2019-19781CHcyber espionagestate-sponsoredcritical infrastructure
threat-intel FBI Disrupts China-Linked QTFY Infrastructure Used to Steal Data From U.S. Organizations The FBI has disrupted a Chinese-linked hacking infrastructure, QScan and QTRouter, operated by the group QTFY, which has been targeting U.S. critical infrastructure since 2018. These tools were used to steal data and con… The Hacker News · 4d ago High CVE-2024-8190CVE-2024-8963CVE-2024-9380CHcyber espionageiotproxy
threat-intel US takes down alleged Chinese hacking tools used against Federal Reserve, DOJ and Senate The U.S. Department of Justice and FBI have taken down Chinese hacking tools – QScan and QTRouter – used by China’s Ministry of State Security and People’s Liberation Army to target U.S. agencies, including the Federal R… The Record · 4d ago High CHchinaiotcyberattack
threat-intel Iran-Linked Hackers Shut Down UK Power Plant for Four Days Iranian-linked hackers successfully shut down a British power plant for four days, raising significant concerns about the escalating cyber threat landscape and the vulnerability of UK critical infrastructure. The inciden… SecurityWeek · 6d ago High UKIRUSirancyberattackcritical infrastructure
threat-intel Water system controllers don't belong on the internet, says ex-NSA chief after suspected Iran attacks An ex-NSA chief is warning that water system controllers, which are increasingly connected to the internet, are vulnerable to attacks, particularly from Iran. He believes these devices represent a significant security ri… The Register · Aug 7, 2026 Medium IRcybersecurityinfrastructureiran
threat-intel Chinese telcos maintain deep US presence despite Salt Typhoon links, House committee says A House Committee investigation, spurred by the Salt Typhoon hack, revealed that Chinese telecommunications giants – China Mobile, China Unicom, and China Telecom – maintain a significant and deeply embedded presence in… The Record · Aug 5, 2026 High CHcybersecuritytelecomstate-sponsored
threat-intel Iran Cyberattacks Against Minnesota Water Systems Preliminary evidence suggests a coordinated cyberattack campaign targeting water systems in multiple US states, with Iran suspected as the source. While no significant damage has been reported, the incident highlights a… Schneier on Security · Aug 4, 2026 Medium USIRcyberattackcritical infrastructureattribution
threat-intel Hackers Exploit AnySign4PC via Hacked Korean Sites to Install Backdoors Without Prompts A state-sponsored threat group, potentially linked to Lazarus and operating between 2025 and 2026, exploited vulnerabilities in AnySign4PC, a certificate-based electronic signature software, to install backdoors on targe… The Hacker News · Jul 30, 2026 High CVE-2020-7882SOwatering holebuffer overflowremote code execution
threat-intel North Korea’s elite hackers turned on their own government – and got caught North Korea's elite hackers, trained by the Reconnaissance and Intelligence General Bureau (the same agency behind the Lazarus Group), turned their skills inward and attempted to steal funds from the country's two larges… Graham Cluley · Jul 30, 2026 High KPnorth koreahackingcybercrime
threat-intel Iran-linked CyberAv3ngers suspected in attacks on Minnesota water systems Iranian-linked cyber actors, believed to be part of the CyberAv3ngers group, are suspected of launching attacks against Minnesota water systems. This indicates a broader trend of state-sponsored cyber activity targeting… The Register · Jul 29, 2026 High IRcyberattackcritical infrastructurestate-sponsored
threat-intel UK court rejects Bahrain immunity claim in spyware case The UK Supreme Court ruled that Bahrain cannot use state immunity to block a lawsuit filed by two dissidents alleging the Bahraini government used the FinSpy spyware to monitor them and their contacts, including politica… The Record · Jul 27, 2026 Medium BHGBsurveillancespywarestate-sponsored
threat-intel Iran-linked crews are probing more flavors of US industrial kit Iranian-linked actors are actively probing and exploiting vulnerabilities in various US-based industrial hardware and software, including AMD systems and Joomla extensions. This activity highlights a broader trend of sta… The Register · Jul 23, 2026 High IRstate-sponsoredvulnerabilitycyberattack
threat-intel Hostile states behind three-quarters of attacks on Britain's critical infrastructure, cyber chief warns This article reports that the UK’s cyber chief, Richard Horne, has shifted the government’s approach to cybersecurity, framing it as a ‘contest’ against hostile state actors rather than a ‘risk’ to be managed. He reveale… The Record · Jun 17, 2026 High CHUKstate-sponsoredcritical infrastructurecyber conflict
threat-intel State-sponsored actors, better known as the friends you don’t want This Cisco Talos report highlights the significant differences in responding to state-sponsored cyber threats compared to conventional attacks like ransomware. It emphasizes that these actors operate within an organizati… Cisco Talos · May 12, 2026 High USUKstate-sponsoredzero trustosint
apt Alleged Silk Typhoon hacker extradited to the United States to face charges A Chinese national, Xu Zewei, has been extradited to the United States to face charges related to his alleged involvement with the Hafnium hacking group, also known as Silk Typhoon. He is accused of attempting to steal c… Graham Cluley · Apr 29, 2026 Critical CHUSstate-sponsoredcyber espionageexchange server