Cyber Attacks
March 20, 2023

Chinese Hackers Exploit Fortinet Zero-Day Flaw for Cyber Espionage Attack

An alleged Chinese hacking organisation has been connected to the zero-day exploitation of a now-patched medium-severity security hole in the Fortinet FortiOS operating system. The activity cluster is a part of a larger campaign to install backdoors onto Fortinet and VMware products and maintain persistent access to target environments, according to threat intelligence company Mandiant, which made the attribution. The malicious activity is being tracked by the Google-owned threat intelligence and incident response company under the uncategorized identifier UNC3886, which it describes as a threat actor with a China link. "UNC3886 is an advanced cyber espionage group with unique capabilities in how they operate on-network as well as the tools they utilize in their campaigns," Mandiant researchers said in a technical analysis.

Read the full article here.

All Posts

Let's talk

We’re here to help! Submit your information or call the office on +44 (0)1243 670 854 and a member of our team would be happy to help.

Who are Cybaverse?
How can we support your business?
Why work with us?