The Digital Source For China's Tech Innovation Since 2000

China Tech Buzz

Global News Impacting Chinese Tech

Chinese APT Hackers Used Log4Shell Exploit to Target Academic Institution

News Snapshot:

By: [Ravie Lakshmanan](/p/authors.html) A never-before-seen China-based targeted intrusion adversary dubbed Aquatic Panda has been observed leveraging critical flaws in the Apache Log4j logging library as an access vector to perform various post-exploitation operations, including reconnaissance and credential harvesting on targeted systems. Cybersecurity firm CrowdStrike said the infiltration, which was ultimately foiled, was aimed at an unnamed “large academic institution.” The state-sponsored group is believed to have been operating since mid-2020 in pursuit of intelligence collection and industrial espionage, with its attacks primarily directed against companies in the telecommunications, technology, and government sectors. The attempted intrusion exploited the newly discovered Log4Shell…

Other China Tech Buzz: