Blog | G5 Cyber Security

DarkHotel APT uses VPN zero-day in attacks on Chinese government agencies

Chinese security firm Qihoo 360 has uncovered a hacking campaign conducted by a DarkHotel APT group (APT-C-06) aimed at Chinese government agencies in Beijing and Shanghai. State-sponsored hackers used a zero-day vulnerability in Sangfor SSL VPN servers to gain access to victims networks. More than 200 VPN servers have been compromised by hackers, including 174 systems belonging to Chinese institutions abroad. The first Darkhotel espionage campaign was spotted by experts at Kaspersky Lab in late 2014.”]

Source: https://securityaffairs.co/wordpress/101151/apt/darkhotel-hit-china.html

Exit mobile version