← Back
Nation-StateSecurity Affairs·3 hours ago

Philippine Nuclear and Naval Targets Hit by Suspected Chinese Operator

A suspected Chinese-speaking threat actor breached Philippine nuclear and naval targets by exploiting known vulnerabilities in internet-facing ownCloud and WordPress systems. The campaign affected a Philippine nuclear research body and a marine engineering company supporting the Philippine Navy, resulting in the theft of sensitive data. The intrusion was discovered by Hunt.io after identifying exposed infrastructure associated with the activity.

Read full article at Security Affairs

Related Articles

Nation-StateSecurity Affairs·1 day ago

Russian APT BlueDelta Uses HOOKEDGE to Target Defense and Diplomatic Organizations

Russian APT BlueDelta leverages webhook.site and Microsoft Edge to conceal command-and-control communications for HOOKEDGE espionage operations targeting European government defense and diplomatic entities. The group, linked to Russia's GRU and overlapping with APT28, exploits the legitimate webhook testing service to hide malicious traffic from detection. Recorded Future's Insikt Group documented the campaign, revealing how the threat actor abuses developer tools to conduct sustained espionage against European government infrastructure.

Nation-StateHelp Net Security·1 day ago

North Korean remote workers are broadening their job hunt beyond IT

North Korean remote workers are expanding beyond traditional IT roles into sales, marketing, and medical positions, according to Huntress research. These actors present a distinctive threat vector by securing legitimate remote employment and performing their assigned duties rather than immediately compromising systems, making them difficult to detect through conventional security controls. The threat highlights how nation-state actors are diversifying their workforce infiltration strategies across multiple business functions.

Nation-StateThe Hacker News·1 day ago

APT28-Linked HOOKEDGE Backdoor Targets European Government and Diplomatic Organizations

Cybersecurity researchers have flagged a fresh set of campaigns targeting government and diplomatic organizations in Romania, Spain, and Türkiye between late September 2025 and early April 2026. These campaigns, per Recorded Future Insikt Group, have led to the deployment of a previously undocumented backdoor dubbed HOOKEDGE, a lightweight Windows batch script that's distributed via