Thread Rating:
  • 0 Vote(s) - 0 Average
  • 1
  • 2
  • 3
  • 4
  • 5
Share Post: Reddit Facebook
Chinese state hackers are exploiting F5, Citrix, Pulse Secure, and Exchange bugs
#1
https://www.zdnet.com/article/cisa-chine...ange-bugs/      CISA: Chinese state hackers are exploiting F5, Citrix, Pulse Secure, and Exchange bugs
CISA says attacks have started a year ago and some have been successful.
By Catalin Cimpanu for Zero Day | September 14, 2020 -- 14:45 GMT (07:45 PDT) | Topic: Security    The Cybersecurity and Infrastructure Security Agency (CISA) has published a security advisory today warning of a wave of attacks carried out by hacking groups affiliated with China's Ministry of State Security (MSS).

CISA says that over the past year, Chinese hackers have scanned US government networks for the presence of popular networking devices and then used exploits for recently disclosed vulnerabilities to gain a foothold on sensitive networks.

The list of targeted devices includes F5 Big-IP load balancers, Citrix and Pulse Secure VPN appliances, and Microsoft Exchange email servers.

For each of these devices, major vulnerabilities have been publicly disclosed over the past 12 months, such as CVE-2020-5902, CVE-2019-19781, CVE-2019-11510, and CVE-2020-0688, respectively.

According to a table summarizing Chinese activity targeting these devices published by CISA today, some attacks have been successful and enabled Chinese hackers to gain a foothold on federal networks.
Reply


Possibly Related Threads…
Thread Author Replies Views Last Post
  Over 640 Citrix servers backdoored with web shells in ongoing attacks mrtrout 0 757 08-03-2023 , 07:56 PM
Last Post: mrtrout
  Microsoft seizes sites used by APT15 Chinese state hackers mrtrout 0 984 12-07-2021 , 11:16 AM
Last Post: mrtrout
  Chinese hackers use Windows zero-day to attack defense, IT firms mrtrout 0 619 10-12-2021 , 10:34 PM
Last Post: mrtrout
  Hackers Steal More Than $97M from Liquid Crypto Exchange mrtrout 0 542 08-23-2021 , 10:22 PM
Last Post: mrtrout
  Chinese Hackers Targeting Russian Federal Agencies mrtrout 0 605 08-06-2021 , 03:31 AM
Last Post: mrtrout

Forum Jump:


Users browsing this thread: 1 Guest(s)