Fine firms for data breaches, Hong Kong cybersecurity experts urge

    Fine firms for data breaches, Hong Kong cybersecurity experts urge

    Cybersecurity experts have called on authorities to impose fines on firms that suffer data breaches, after the personal information of more than 1 million people linked to a leading Hong Kong appliance distributor was maliciously encrypted. They made the comments on Friday, a day after the city’s privacy watchdog announced it had launched an investigation…

    Read More
    The logo of the AI assistant 'Claude Mythos' built by the US artificial intelligence firm Anthropic displayed on a smartphone in Brussels on 10 June, 2026 (AFP/Getty)

      China has AI ‘cyber nuclear weapon’

      A Chinese artificial intelligence company claims to have created a “cyber nuclear weapon” that could carry out devastating attacks on Western companies and governments. Beijing-based Zhipu AI (Z.ai) said its AI model now matches Anthropic’s Mythos model at finding cyber security vulnerabilities, putting China on par with the US. When Mythos was unveiled in April,…

      Read More
      ESET links China-aligned hacks to oil, Syria & tech

        ESET links China-aligned hacks to oil, Syria & tech

        ESET has published a report on nation-state-aligned cyber activity between October 2025 and March 2026, identifying sustained operations by China-aligned groups against targets in Venezuela, Syria, South Korea and the Gulf. Chinese threat actors remained active across maritime, energy, government and advanced technology targets during the period. ESET linked that activity to areas where Beijing…

        Read More
        UK NCSC urges critical infrastructure and local authorities to reinforce DoS defences amid pro-Russia hacktivist surge

        UK NCSC urges critical infrastructure and local authorities to reinforce DoS defences amid pro-Russia hacktivist surge

        The U.K. National Cyber Security Centre (NCSC) issued fresh guidance calling on local government and critical infrastructure operators to harden denial-of-service (DoS) defences following a rise in pro-Russia hacktivist activity targeting organisations. The hackers attempt to disrupt operations, take websites offline, and disable services.  “In particular, the group NoName057(16) has been active since March 2022,…

        Read More
        China-Aligned Threat Group Uses Windows Group Policy to Deploy Espionage Malware

          China-Aligned Threat Group Uses Windows Group Policy to Deploy Espionage Malware

          Dec 18, 2025Ravie LakshmananMalware / Cloud Security A previously undocumented China-aligned threat cluster dubbed LongNosedGoblin has been attributed to a series of cyber attacks targeting governmental entities in Southeast Asia and Japan. The end goal of these attacks is cyber espionage, Slovak cybersecurity company ESET said in a report published today. The threat activity cluster…

          Read More
          Chinese Hackers Have Started Exploiting the Newly Disclosed React2Shell Vulnerability

            Chinese Hackers Have Started Exploiting the Newly Disclosed React2Shell Vulnerability

            Dec 05, 2025Ravie LakshmananVulnerability / Software Security Two hacking groups with ties to China have been observed weaponizing the newly disclosed security flaw in React Server Components (RSC) within hours of it becoming public knowledge. The vulnerability in question is CVE-2025-55182 (CVSS score: 10.0), aka React2Shell, which allows unauthenticated remote code execution. It has been…

            Read More
            CISA Reports PRC Hackers Using BRICKSTORM for Long-Term Access in U.S. Systems

              CISA Reports PRC Hackers Using BRICKSTORM for Long-Term Access in U.S. Systems

              The U.S. Cybersecurity and Infrastructure Security Agency (CISA) on Thursday released details of a backdoor named BRICKSTORM that has been put to use by state-sponsored threat actors from the People’s Republic of China (PRC) to maintain long-term persistence on compromised systems. “BRICKSTORM is a sophisticated backdoor for VMware vSphere and Windows environments,” the agency said….

              Read More