#espionage
35 stories taggedespionage · page 2 of 3.

AI Agents Ran a Four-Day Hacking Campaign Against Taiwan's Government Systems
Researchers say a cluster of AI programs worked in near-total automation to steal credentials, map government networks, and probe a nuclear safety agency, a sign that organised hacking is getting cheaper and faster.

Meet Jewelbug: The Chinese Hacker-for-Hire Group Stealing Crypto and Spying on Governments at the Same Time
A single criminal outfit runs a massive cryptocurrency scam network with one hand and breaks into Middle Eastern government email systems with the other. Researchers say the group almost certainly works for China.

Kimsuky Goes Offline: North Korean Spies Build Their Own Private AI Toolkit
South Korean researchers say the Kimsuky group has stopped relying on public chatbots and is now running AI on its own servers to sharpen phishing and speed up malware writing.

Chinese-Speaking Hackers Hit Central Asian Governments With Two New Malware Families
Researchers link a spying campaign against Afghanistan, Kyrgyzstan and four neighbouring states to a Chinese-speaking crew using tools tracked as OctLurk and SilkLurk.

Iran-Linked Hackers Deploy 'NightLedger' Backdoor Against Middle East, Africa Targets
Nimbus Manticore is running a fresh campaign with a new Windows backdoor and hidden tunnels that turn victim machines into relays.

China-Linked Hackers Hit Middle East Governments With New Malware That Hides in Telegram
Zscaler researchers say a group tied to East Asia is running fresh spy operations against government networks, using three never-before-seen tools.

Three Security Stories You May Have Missed: Industrial Switches, Russian Email Spying, and a Rail Ransomware Shakedown
Flaws in Siemens industrial network hardware, a Russian espionage campaign targeting Zimbra webmail servers, and a ransomware extortion attempt against Swiss train maker Stadler Rail.

Leaky Alibaba Cloud Server Exposes China-Linked Spying Kit Aimed at Hospitals and Governments
Researchers at Group-IB stumbled on a misconfigured server in Singapore that revealed a new Windows loader, TriBack, used against targets across Asia and Latin America.

HollowGraph Spies Hide Their Orders in Fake Calendar Events Dated 2050
A newly named espionage tool turns Microsoft 365 calendars into a secret mailbox, tucking instructions and stolen files into meetings set decades in the future.

Russian spies are hijacking Europe's security cameras to watch weapons move to Ukraine
Dutch intelligence says a Kremlin unit is quietly logging into internet-connected CCTV to track military convoys, aid shipments and troop positions.

Hackers hijack Russian security tool ViPNet to spy on government agencies
A campaign called HelloNet has been slipping malicious files into ViPNet updates since May, hitting Russian ministries, energy firms and transport operators.

GoSerpent: A New Espionage Tool Quietly Targeting Southeast Asian Governments
Kaspersky says the previously unseen malware has been hitting government and diplomatic offices across the region since late 2025, with signs pointing to long-term spying rather than smash-and-grab theft.

China-Linked 'Daxin' Rootkit Returns After Four Years, Found Inside Taiwan Factory
The stealthy kernel malware, last documented in 2022, showed up alongside a new backdoor called Stupig on a manufacturer's network.

Suspected Chinese and Indian Spies Both Targeted Pakistani Police, Researchers Say
A two-year campaign hit Balochistan Police and other law enforcement bodies, with servers holding criminal records among the compromised assets.

Zimbra Patches Critical Webmail Flaw That Lets Booby-Trapped Emails Run Code
A stored cross-site scripting bug in Zimbra's Classic Web Client can hijack a user's session the moment a rigged email is opened.