CyberHappenings logo

Track cybersecurity events as they unfold. Sourced timelines. Filter, sort, and browse. Fast, privacy‑respecting. No invasive ads, no tracking.

China-Linked Threat Actor Targets U.S. Non-Profit with Legacy Exploits

First reported
Last updated
1 unique sources, 1 articles

Summary

Hide ▲

A China-linked threat actor targeted a U.S. non-profit organization in April 2025, leveraging multiple legacy vulnerabilities to gain persistent access. The attackers used exploits like CVE-2022-26134, CVE-2021-44228, and others to establish a foothold, then employed scheduled tasks and legitimate binaries to maintain persistence and communicate with a command-and-control server. The activity aligns with broader Chinese espionage efforts against U.S. entities involved in policy issues.

Timeline

  1. 07.11.2025 18:07 1 articles · 3d ago

    China-Linked Threat Actor Targets U.S. Non-Profit with Legacy Exploits

    In April 2025, a China-linked threat actor targeted a U.S. non-profit organization using multiple legacy vulnerabilities to gain persistent access. The attackers leveraged exploits like CVE-2022-26134 and CVE-2021-44228 to establish a foothold, then used scheduled tasks and legitimate binaries to maintain persistence and communicate with a command-and-control server. The activity aligns with broader Chinese espionage efforts against U.S. entities involved in policy issues.

    Show sources

Information Snippets