More

    Chinese hackers target European diplomats with Windows zero-day flaw



    • Mustang Panda used CVE-2025-9491 to target European diplomats via phishing and malicious .LNK files
    • Exploited Windows Shell Link flaw deploys PlugX RAT for persistent access and data exfiltration
    • Hundreds of samples link the zero-day to long-running Chinese espionage campaigns since at least 2017

    Chinese state-sponsored threat actors have been abusing a Windows zero-day vulnerability to target diplomats across the European continent, security researchers are warning.

    Security researchers Arctic Wolf Labs recently said they observed a nation-state actor known as Mustang Panda (UNC6384) sending out spear-phishing emails to diplomats in Hungary, Belgium, Serbia, Italy, and the Netherlands.


    https://cdn.mos.cms.futurecdn.net/ef8zeecGrS3texgTdoSkYe-970-80.jpg



    Source link

    Latest articles

    spot_imgspot_img

    Related articles

    Leave a reply

    Please enter your comment!
    Please enter your name here

    spot_imgspot_img