Get the latest tech news

New 0-Day Attacks Linked to China's 'Volt Typhoon'


Malicious hackers are exploiting a zero-day vulnerability in Versa Director, a software product used by many Internet and IT service providers. Researchers believe the activity is linked to Volt Typhoon, a Chinese cyber espionage group focused on infiltrating critical U.S.…

Black Lotus Labs said it assessed with “medium” confidence that Volt Typhoon was responsible for the compromises, noting the intrusions bear the hallmarks of the Chinese state-sponsored espionage group — including zero-day attacks targeting IT infrastructure providers, and Java-based backdoors that run in memory only. In early December 2023, Black Lotus Labs published its findings on “ KV-botnet,” thousands of compromised SOHO routers that were chained together to form a covert data transfer network supporting various Chinese state-sponsored hacking groups, including Volt Typhoon. In February 2024, CISA again joined the FBI and NSA in warning Volt Typhoon had compromised the IT environments of multiple critical infrastructure organizations — primarily in communications, energy, transportation systems, and water and wastewater sectors — in the continental and non-continental United States and its territories, including Guam.

Get the Android app

Or read this on Hacker News

Read more on:

Photo of China

China

Photo of day attacks

day attacks

Photo of Volt Typhoon

Volt Typhoon

Related news:

News photo

Emerging Currencies Edge Lower as Traders Await Fresh US Data

News photo

JD.com Unveils $5 Billion Buyback as China Concerns Grow

News photo

PDD’s $55 Billion Stock Crash Sends Warning on China Economy