{"id":118584,"date":"2025-07-29T14:42:35","date_gmt":"2025-07-29T14:42:35","guid":{"rendered":"https:\/\/cybersecuritynews.com\/?p=118584"},"modified":"2025-07-29T14:42:41","modified_gmt":"2025-07-29T14:42:41","slug":"chinese-hackers-weaponizes-software-vulnerabilities","status":"publish","type":"post","link":"https:\/\/cybersecuritynews.com\/chinese-hackers-weaponizes-software-vulnerabilities\/","title":{"rendered":"Chinese Hackers Weaponizes Software Vulnerabilities to Compromise Their Targets"},"content":{"rendered":"\n<p>Over the past year, a previously quiet Chinese threat cluster has surged onto incident-response dashboards worldwide, pivoting from single zero-day hits to an industrialized pipeline of weaponized vulnerabilities.<\/p>\n\n\n\n<p>First detected targeting unpatched Fortinet SSL-VPN appliances in late-2024, the group\u2014dubbed \u201cGoujian Spider\u201d by incident handlers\u2014now blends rapid vulnerability acquisition with skillful post-exploitation automation, breaching defense contractors, chip designers, and maritime-logistics firms in nine countries.<\/p>\n\n\n\n<p>Each intrusion begins with a freshly harvested flaw, usually appearing on China\u2019s internal National Vulnerability Database (NVDB) weeks before a public CVE number is assigned, giving operators a decisive head start.<\/p>\n\n\n\n<p>Initial access is followed by the quiet deployment of an encrypted loader that unwraps a bespoke <a href=\"https:\/\/cybersecuritynews.com\/golang-vulnerability-alert\/\" target=\"_blank\" rel=\"noreferrer noopener\">Golang<\/a> implant nicknamed \u201cREDSAM\u201d for its hard-coded command string, <code>red_sam_initialize()<\/code>.<\/p>\n\n\n\n<p>Archive analysts <a href=\"https:\/\/archive.ph\/Oac6R#selection-2853.0-2853.15\" target=\"_blank\" rel=\"noreferrer noopener nofollow\">noted<\/a> the malware after correlating traffic spikes from a Shanghai AS to simultaneous NVDB disclosures on February 11, 2025, flagging the campaign as the first field proof that China\u2019s 2021 Regulations on the Management of Network Product Security Vulnerabilities (RMSV) had matured into a full offensive supply chain.<\/p>\n\n\n\n<p>Researchers identified that Goujian Spider cycled through three distinct exploits in just forty-eight hours\u2014one for Ivanti Connect Secure, one for Atlassian Confluence, and one for a niche OPC UA gateway\u2014suggesting privileged access to vulnerability feeds well before patches shipped.<\/p>\n\n\n\n<p>The impact is significant: incident responders trace at least sixty hosts exfiltrating design files, satellite telemetry, and employee single sign-on cookies.<\/p>\n\n\n\n<p>Post-mortem forensic timelines show REDSAM executing only after vulnerabilities were publicly acknowledged, indicating deliberate staging to mask the initial foothold and frustrate attribution.<\/p>\n\n\n\n<h2 class=\"wp-block-heading\"><strong>Inside the Infection Mechanism<\/strong><\/h2>\n\n\n\n<p>Goujian Spider\u2019s infection chain compresses <a href=\"https:\/\/cybersecuritynews.com\/morphing-meerkat-phaas-using-dns-reconnaissance\/\" target=\"_blank\" rel=\"noreferrer noopener\">reconnaissance<\/a>, exploitation, and persistence into fewer than 400 lines of code.<\/p>\n\n\n<div class=\"wp-block-image\">\n<figure class=\"aligncenter size-large\"><img decoding=\"async\" src=\"https:\/\/blogger.googleusercontent.com\/img\/b\/R29vZ2xl\/AVvXsEhWB16iEJrSDjefhYAZIDIbx0HyXeTGkLdjtcCBkRNu86RKknSHZoOFcUExvJjkuDCj4y1Egkrc9HG9wZNdZwEaUHOgldIEWrKiPw75qXwUAHuOEoUwKH_8FHRGL5utWZPaaQ-ilkisfrp3Y2dykMvNCouW_vUIytjMS_xPM-ZGrV_juOjWSwI182OxTr8\/s16000\/Attack%20flow%20(Source%20-%20Archive).webp\" alt=\"\" \/><figcaption class=\"wp-element-caption\">Attack flow (Source &#8211; Archive)<\/figcaption><\/figure><\/div>\n\n\n<p>Once the vulnerable web component is probed with a crafted request, a memory-only loader called \u201cLilacDrop\u201d is streamed via chunked HTTP and executed through reflective <a href=\"https:\/\/cybersecuritynews.com\/hackers-employ-dll-side-loading\/\" target=\"_blank\" rel=\"noreferrer noopener\">DLL loading<\/a>.<\/p>\n\n\n\n<p>The following Go fragment (de-obfuscated by reversing teams) reveals how LilacDrop injects REDSAM into <code>spoolsv.exe<\/code>, bypassing common EDR hooks:-<\/p>\n\n\n\n<pre class=\"wp-block-code\"><code>func elevateAndSpawn(shellcode &#091;]byte) error {\n    hProc, _ := windows.OpenProcess(windows.PROCESS_ALL_ACCESS, false, pidByName(\"spoolsv.exe\"))\n    remoteAddr, _ := windows.VirtualAllocEx(hProc, 0, uintptr(len(shellcode)),\n                                            windows.MEM_COMMIT, windows.PAGE_EXECUTE_READWRITE)\n    var written uintptr\n    windows.WriteProcessMemory(hProc, remoteAddr, &amp;shellcode&#091;0], uintptr(len(shellcode)), &amp;written)\n    thd, _, _ := procCreateRemoteThread.Call(uintptr(hProc), 0, 0, remoteAddr, 0, 0, 0)\n    windows.WaitForSingleObject(windows.Handle(thd), windows.INFINITE)\n    return nil\n}<\/code><\/pre>\n\n\n\n<p>The snippet highlights three tactical choices:-<\/p>\n\n\n\n<ol class=\"wp-block-list\">\n<li><strong>Process hijack over service creation<\/strong> \u2014 hijacking <code>spoolsv.exe<\/code> avoids new services that defenders often audit.<\/li>\n\n\n\n<li><strong>Memory-only execution<\/strong> \u2014 no payload touches disk, thwarting signature-based scanners.<\/li>\n\n\n\n<li><strong>Single-thread completion<\/strong> \u2014 the code waits for the injected thread to finish before cleaning up, erasing forensics.<\/li>\n<\/ol>\n\n\n\n<p>To remain resident, REDSAM creates a hidden Scheduled Task named \u201cWindows LSM Cache\u201d that runs every 15 minutes, but only if the NVDB entry for its initial CVE receives a public proof-of-concept tag\u2014ensuring the implant reactivates when defenders are busiest.<\/p>\n\n\n\n<p>Detection evasion extends to log pruning: a built-in routine searches Windows Event ID 4104 (PowerShell), 4688 (process creation), and 1102 (audit log cleared) and selectively deletes lines containing its mutex <code>Global\\RS_MUTEX<\/code>.<\/p>\n\n\n<div class=\"wp-block-image\">\n<figure class=\"aligncenter size-large\"><img decoding=\"async\" src=\"https:\/\/blogger.googleusercontent.com\/img\/b\/R29vZ2xl\/AVvXsEhS72r4UMLh8RzLwNYxz90qnPr2tuuYvBGDI8InL5uaB8Rx67_SxRNs5ZRsoOWaope_G1OeNYRaonIm23UkqD3dQGtaiyHqf8k8WYe3Q6_Kly_w727vFcmhMwcgLDyTj_GZC0nQet_sxdtvLBIiIJvPFa5Tp5yBLE9p9Qn0yDYWP3u-LCcXUAAhttZufDI\/s16000\/A%20complete%20concept%20map%20of%20China%E2%80%99s%20government%20vulnerabilities%20databases%20(Source%20-%20Archive).webp\" alt=\"\" \/><figcaption class=\"wp-element-caption\">A complete concept map of China\u2019s government vulnerabilities databases (Source &#8211; Archive)<\/figcaption><\/figure><\/div>\n\n\n<p>This maps each stage\u2014from exploit to <a href=\"https:\/\/cybersecuritynews.com\/cl0p-ransomware-data-exfiltration-vulnerable\/\" target=\"_blank\" rel=\"noreferrer noopener\">exfiltration<\/a>\u2014overlaying observed mutexes and command-and-control URIs extracted during a breach of a Taiwanese semiconductor fab.<\/p>\n\n\n\n<p>While the timeline of NVDB vs. CVE Release shows the group\u2019s average eleven-day advantage between domestic disclosure and public CVE assignment.<\/p>\n\n\n\n<p>Despite Goujian Spider\u2019s sophistication, <a href=\"https:\/\/cybersecuritynews.com\/new-techniques-for-defenders-to-shutdown-cryptominer-attacks\/\" target=\"_blank\" rel=\"noreferrer noopener\">defenders<\/a> can hunt for abnormal network egress to hard-coded <code>\/public\/upload<\/code> paths on TCP 443 and monitor Scheduled Tasks for non-Microsoft descriptions.<\/p>\n\n\n\n<p>Rapid patch adoption remains paramount: in the fab case, a timely vendor hotfix would have neutralized the Ivanti exploit three days before weaponization.<\/p>\n\n\n\n<p>As RMSV-driven vulnerability harvesting accelerates, organizations must treat every NVDB listing\u2014public or leaked\u2014as an imminent threat window, shortening internal patch cycles accordingly.<\/p>\n\n\n\n<p class=\"has-text-align-center has-background\" style=\"background:linear-gradient(180deg,rgb(238,238,238) 91%,rgb(169,184,195) 100%)\"><strong>Integrate\u00a0<strong>ANY.RUN TI Lookup<\/strong>\u00a0with your SIEM or SOAR To Analyses Advanced Threats<\/strong>\u00a0-&gt;\u00a0<strong><a href=\"https:\/\/intelligence.any.run\/plans?utm_source=csn_jul&amp;utm_medium=atricle&amp;utm_campaign=want-to-detect-incidents-before&amp;utm_content=plans1&amp;utm_term=290725\" target=\"_blank\" rel=\"noreferrer noopener nofollow\">Try 50 Free Trial Searches<\/a><\/strong><\/p>\n","protected":false},"excerpt":{"rendered":"<p>Over the past year, a previously quiet Chinese threat cluster has surged onto incident-response dashboards worldwide, pivoting from single zero-day hits to an industrialized pipeline of weaponized vulnerabilities. First detected targeting unpatched Fortinet SSL-VPN appliances in late-2024, the group\u2014dubbed \u201cGoujian Spider\u201d by incident handlers\u2014now blends rapid vulnerability acquisition with skillful post-exploitation automation, breaching defense contractors, [&hellip;]<\/p>\n","protected":false},"author":6,"featured_media":118587,"comment_status":"closed","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"fifu_image_url":"https:\/\/blogger.googleusercontent.com\/img\/b\/R29vZ2xl\/AVvXsEg3X2IX6IBmqjBjM1kuEKGgRysYrqlJxa52UfDXqmkutjmPvALLn25XdxEMoAw63Bxnq2u8NUg0ylxc_y5PcyapqQAm3L3oTEwqPJ7DMxHTWQOzogHOtA_k3YKrla5r06lR5p-pa5C7c5Rf7eBYOpSXX56ZEd9e_MxAP0m1eVJbfnWecqUgUPFjRj5_Wgo\/s16000\/Chinese%20Hackers%20Weaponizes%20Software%20Vulnerabilities%20to%20Compromise%20Their%20Targets.webp","fifu_image_alt":"","_jetpack_memberships_contains_paid_content":false,"footnotes":""},"categories":[11,48],"tags":[149,151],"class_list":{"0":"post-118584","1":"post","2":"type-post","3":"status-publish","4":"format-standard","5":"has-post-thumbnail","7":"category-cyber-security-news","8":"category-threats","9":"tag-cyber-security","10":"tag-cyber-security-news"},"yoast_head":"<!-- This site is optimized with the Yoast SEO Premium plugin v25.7.1 (Yoast SEO v25.7) - https:\/\/yoast.com\/wordpress\/plugins\/seo\/ -->\n<title>Chinese Hackers Weaponizes Software Vulnerabilities to Compromise Their Targets<\/title>\n<meta name=\"description\" content=\"Goujian Spider APT exploits pre-CVE flaws from China\u2019s NVDB, using REDSAM malware to target global firms with rapid zero-day attacks.\" \/>\n<meta name=\"robots\" content=\"index, follow, max-snippet:-1, max-image-preview:large, max-video-preview:-1\" \/>\n<link rel=\"canonical\" href=\"https:\/\/cybersecuritynews.com\/chinese-hackers-weaponizes-software-vulnerabilities\/\" \/>\n<meta property=\"og:locale\" content=\"en_US\" \/>\n<meta property=\"og:type\" content=\"article\" \/>\n<meta property=\"og:title\" content=\"Chinese Hackers Weaponizes Software Vulnerabilities to Compromise Their Targets\" \/>\n<meta property=\"og:description\" content=\"Goujian Spider APT exploits pre-CVE flaws from China\u2019s NVDB, using REDSAM malware to target global firms with rapid zero-day attacks.\" \/>\n<meta property=\"og:url\" content=\"https:\/\/cybersecuritynews.com\/chinese-hackers-weaponizes-software-vulnerabilities\/\" \/>\n<meta property=\"og:site_name\" content=\"Cyber Security News\" \/>\n<meta property=\"article:publisher\" content=\"https:\/\/www.facebook.com\/Hackingtutorialsandnews\" \/>\n<meta property=\"article:published_time\" content=\"2025-07-29T14:42:35+00:00\" \/>\n<meta property=\"article:modified_time\" content=\"2025-07-29T14:42:41+00:00\" \/>\n<meta property=\"og:image\" content=\"https:\/\/blogger.googleusercontent.com\/img\/b\/R29vZ2xl\/AVvXsEg3X2IX6IBmqjBjM1kuEKGgRysYrqlJxa52UfDXqmkutjmPvALLn25XdxEMoAw63Bxnq2u8NUg0ylxc_y5PcyapqQAm3L3oTEwqPJ7DMxHTWQOzogHOtA_k3YKrla5r06lR5p-pa5C7c5Rf7eBYOpSXX56ZEd9e_MxAP0m1eVJbfnWecqUgUPFjRj5_Wgo\/s16000\/Chinese%20Hackers%20Weaponizes%20Software%20Vulnerabilities%20to%20Compromise%20Their%20Targets.webp\" \/><meta property=\"og:image\" content=\"https:\/\/blogger.googleusercontent.com\/img\/b\/R29vZ2xl\/AVvXsEg3X2IX6IBmqjBjM1kuEKGgRysYrqlJxa52UfDXqmkutjmPvALLn25XdxEMoAw63Bxnq2u8NUg0ylxc_y5PcyapqQAm3L3oTEwqPJ7DMxHTWQOzogHOtA_k3YKrla5r06lR5p-pa5C7c5Rf7eBYOpSXX56ZEd9e_MxAP0m1eVJbfnWecqUgUPFjRj5_Wgo\/s16000\/Chinese%20Hackers%20Weaponizes%20Software%20Vulnerabilities%20to%20Compromise%20Their%20Targets.webp\" \/>\n\t<meta property=\"og:image:width\" content=\"1600\" \/>\n\t<meta property=\"og:image:height\" content=\"900\" \/>\n\t<meta property=\"og:image:type\" content=\"image\/jpeg\" \/>\n<meta name=\"author\" content=\"Tushar Subhra Dutta\" \/>\n<meta name=\"twitter:card\" content=\"summary_large_image\" \/>\n<meta name=\"twitter:image\" content=\"https:\/\/blogger.googleusercontent.com\/img\/b\/R29vZ2xl\/AVvXsEg3X2IX6IBmqjBjM1kuEKGgRysYrqlJxa52UfDXqmkutjmPvALLn25XdxEMoAw63Bxnq2u8NUg0ylxc_y5PcyapqQAm3L3oTEwqPJ7DMxHTWQOzogHOtA_k3YKrla5r06lR5p-pa5C7c5Rf7eBYOpSXX56ZEd9e_MxAP0m1eVJbfnWecqUgUPFjRj5_Wgo\/s16000\/Chinese%20Hackers%20Weaponizes%20Software%20Vulnerabilities%20to%20Compromise%20Their%20Targets.webp\" \/>\n<meta name=\"twitter:creator\" content=\"@The_Cyber_News\" \/>\n<meta name=\"twitter:site\" content=\"@The_Cyber_News\" \/>\n<meta name=\"twitter:label1\" content=\"Written by\" \/>\n\t<meta name=\"twitter:data1\" content=\"Tushar Subhra Dutta\" \/>\n\t<meta name=\"twitter:label2\" content=\"Est. reading time\" \/>\n\t<meta name=\"twitter:data2\" content=\"3 minutes\" \/>\n<!-- \/ Yoast SEO Premium plugin. -->","yoast_head_json":{"title":"Chinese Hackers Weaponizes Software Vulnerabilities to Compromise Their Targets","description":"Goujian Spider APT exploits pre-CVE flaws from China\u2019s NVDB, using REDSAM malware to target global firms with rapid zero-day attacks.","robots":{"index":"index","follow":"follow","max-snippet":"max-snippet:-1","max-image-preview":"max-image-preview:large","max-video-preview":"max-video-preview:-1"},"canonical":"https:\/\/cybersecuritynews.com\/chinese-hackers-weaponizes-software-vulnerabilities\/","og_locale":"en_US","og_type":"article","og_title":"Chinese Hackers Weaponizes Software Vulnerabilities to Compromise Their Targets","og_description":"Goujian Spider APT exploits pre-CVE flaws from China\u2019s NVDB, using REDSAM malware to target global firms with rapid zero-day attacks.","og_url":"https:\/\/cybersecuritynews.com\/chinese-hackers-weaponizes-software-vulnerabilities\/","og_site_name":"Cyber Security News","article_publisher":"https:\/\/www.facebook.com\/Hackingtutorialsandnews","article_published_time":"2025-07-29T14:42:35+00:00","article_modified_time":"2025-07-29T14:42:41+00:00","og_image":[{"url":"https:\/\/blogger.googleusercontent.com\/img\/b\/R29vZ2xl\/AVvXsEg3X2IX6IBmqjBjM1kuEKGgRysYrqlJxa52UfDXqmkutjmPvALLn25XdxEMoAw63Bxnq2u8NUg0ylxc_y5PcyapqQAm3L3oTEwqPJ7DMxHTWQOzogHOtA_k3YKrla5r06lR5p-pa5C7c5Rf7eBYOpSXX56ZEd9e_MxAP0m1eVJbfnWecqUgUPFjRj5_Wgo\/s16000\/Chinese%20Hackers%20Weaponizes%20Software%20Vulnerabilities%20to%20Compromise%20Their%20Targets.webp","type":"","width":"","height":""},{"width":1600,"height":900,"url":"https:\/\/blogger.googleusercontent.com\/img\/b\/R29vZ2xl\/AVvXsEg3X2IX6IBmqjBjM1kuEKGgRysYrqlJxa52UfDXqmkutjmPvALLn25XdxEMoAw63Bxnq2u8NUg0ylxc_y5PcyapqQAm3L3oTEwqPJ7DMxHTWQOzogHOtA_k3YKrla5r06lR5p-pa5C7c5Rf7eBYOpSXX56ZEd9e_MxAP0m1eVJbfnWecqUgUPFjRj5_Wgo\/s16000\/Chinese%20Hackers%20Weaponizes%20Software%20Vulnerabilities%20to%20Compromise%20Their%20Targets.webp","type":"image\/jpeg"}],"author":"Tushar Subhra Dutta","twitter_card":"summary_large_image","twitter_image":"https:\/\/blogger.googleusercontent.com\/img\/b\/R29vZ2xl\/AVvXsEg3X2IX6IBmqjBjM1kuEKGgRysYrqlJxa52UfDXqmkutjmPvALLn25XdxEMoAw63Bxnq2u8NUg0ylxc_y5PcyapqQAm3L3oTEwqPJ7DMxHTWQOzogHOtA_k3YKrla5r06lR5p-pa5C7c5Rf7eBYOpSXX56ZEd9e_MxAP0m1eVJbfnWecqUgUPFjRj5_Wgo\/s16000\/Chinese%20Hackers%20Weaponizes%20Software%20Vulnerabilities%20to%20Compromise%20Their%20Targets.webp","twitter_creator":"@The_Cyber_News","twitter_site":"@The_Cyber_News","twitter_misc":{"Written by":"Tushar Subhra Dutta","Est. reading time":"3 minutes"},"schema":{"@context":"https:\/\/schema.org","@graph":[{"@type":"NewsArticle","@id":"https:\/\/cybersecuritynews.com\/chinese-hackers-weaponizes-software-vulnerabilities\/#article","isPartOf":{"@id":"https:\/\/cybersecuritynews.com\/chinese-hackers-weaponizes-software-vulnerabilities\/"},"author":{"name":"Tushar Subhra Dutta","@id":"https:\/\/cybersecuritynews.com\/#\/schema\/person\/7eb7d8d026aa5dd566f134d4def5c05c"},"headline":"Chinese Hackers Weaponizes Software Vulnerabilities to Compromise Their Targets","datePublished":"2025-07-29T14:42:35+00:00","dateModified":"2025-07-29T14:42:41+00:00","mainEntityOfPage":{"@id":"https:\/\/cybersecuritynews.com\/chinese-hackers-weaponizes-software-vulnerabilities\/"},"wordCount":596,"publisher":{"@id":"https:\/\/cybersecuritynews.com\/#organization"},"image":{"@id":"https:\/\/cybersecuritynews.com\/chinese-hackers-weaponizes-software-vulnerabilities\/#primaryimage"},"thumbnailUrl":"https:\/\/i0.wp.com\/blogger.googleusercontent.com\/img\/b\/R29vZ2xl\/AVvXsEg3X2IX6IBmqjBjM1kuEKGgRysYrqlJxa52UfDXqmkutjmPvALLn25XdxEMoAw63Bxnq2u8NUg0ylxc_y5PcyapqQAm3L3oTEwqPJ7DMxHTWQOzogHOtA_k3YKrla5r06lR5p-pa5C7c5Rf7eBYOpSXX56ZEd9e_MxAP0m1eVJbfnWecqUgUPFjRj5_Wgo\/s16000\/Chinese%20Hackers%20Weaponizes%20Software%20Vulnerabilities%20to%20Compromise%20Their%20Targets.webp?w=1600&resize=1600,900&ssl=1","keywords":["cyber security","cyber security news"],"articleSection":["Cyber Security News","Threats"],"inLanguage":"en-US","copyrightYear":"2025","copyrightHolder":{"@id":"https:\/\/cybersecuritynews.com\/#organization"}},{"@type":"WebPage","@id":"https:\/\/cybersecuritynews.com\/chinese-hackers-weaponizes-software-vulnerabilities\/","url":"https:\/\/cybersecuritynews.com\/chinese-hackers-weaponizes-software-vulnerabilities\/","name":"Chinese Hackers Weaponizes Software Vulnerabilities to Compromise Their Targets","isPartOf":{"@id":"https:\/\/cybersecuritynews.com\/#website"},"primaryImageOfPage":{"@id":"https:\/\/cybersecuritynews.com\/chinese-hackers-weaponizes-software-vulnerabilities\/#primaryimage"},"image":{"@id":"https:\/\/cybersecuritynews.com\/chinese-hackers-weaponizes-software-vulnerabilities\/#primaryimage"},"thumbnailUrl":"https:\/\/i0.wp.com\/blogger.googleusercontent.com\/img\/b\/R29vZ2xl\/AVvXsEg3X2IX6IBmqjBjM1kuEKGgRysYrqlJxa52UfDXqmkutjmPvALLn25XdxEMoAw63Bxnq2u8NUg0ylxc_y5PcyapqQAm3L3oTEwqPJ7DMxHTWQOzogHOtA_k3YKrla5r06lR5p-pa5C7c5Rf7eBYOpSXX56ZEd9e_MxAP0m1eVJbfnWecqUgUPFjRj5_Wgo\/s16000\/Chinese%20Hackers%20Weaponizes%20Software%20Vulnerabilities%20to%20Compromise%20Their%20Targets.webp?w=1600&resize=1600,900&ssl=1","datePublished":"2025-07-29T14:42:35+00:00","dateModified":"2025-07-29T14:42:41+00:00","description":"Goujian Spider APT exploits pre-CVE flaws from China\u2019s NVDB, using REDSAM malware to target global firms with rapid zero-day attacks.","breadcrumb":{"@id":"https:\/\/cybersecuritynews.com\/chinese-hackers-weaponizes-software-vulnerabilities\/#breadcrumb"},"inLanguage":"en-US","potentialAction":[{"@type":"ReadAction","target":["https:\/\/cybersecuritynews.com\/chinese-hackers-weaponizes-software-vulnerabilities\/"]}]},{"@type":"ImageObject","inLanguage":"en-US","@id":"https:\/\/cybersecuritynews.com\/chinese-hackers-weaponizes-software-vulnerabilities\/#primaryimage","url":"https:\/\/i0.wp.com\/blogger.googleusercontent.com\/img\/b\/R29vZ2xl\/AVvXsEg3X2IX6IBmqjBjM1kuEKGgRysYrqlJxa52UfDXqmkutjmPvALLn25XdxEMoAw63Bxnq2u8NUg0ylxc_y5PcyapqQAm3L3oTEwqPJ7DMxHTWQOzogHOtA_k3YKrla5r06lR5p-pa5C7c5Rf7eBYOpSXX56ZEd9e_MxAP0m1eVJbfnWecqUgUPFjRj5_Wgo\/s16000\/Chinese%20Hackers%20Weaponizes%20Software%20Vulnerabilities%20to%20Compromise%20Their%20Targets.webp?w=1600&resize=1600,900&ssl=1","contentUrl":"https:\/\/i0.wp.com\/blogger.googleusercontent.com\/img\/b\/R29vZ2xl\/AVvXsEg3X2IX6IBmqjBjM1kuEKGgRysYrqlJxa52UfDXqmkutjmPvALLn25XdxEMoAw63Bxnq2u8NUg0ylxc_y5PcyapqQAm3L3oTEwqPJ7DMxHTWQOzogHOtA_k3YKrla5r06lR5p-pa5C7c5Rf7eBYOpSXX56ZEd9e_MxAP0m1eVJbfnWecqUgUPFjRj5_Wgo\/s16000\/Chinese%20Hackers%20Weaponizes%20Software%20Vulnerabilities%20to%20Compromise%20Their%20Targets.webp?w=1600&resize=1600,900&ssl=1","width":"1600","height":"900"},{"@type":"BreadcrumbList","@id":"https:\/\/cybersecuritynews.com\/chinese-hackers-weaponizes-software-vulnerabilities\/#breadcrumb","itemListElement":[{"@type":"ListItem","position":1,"name":"Home","item":"https:\/\/cybersecuritynews.com\/"},{"@type":"ListItem","position":2,"name":"Chinese Hackers Weaponizes Software Vulnerabilities to Compromise Their Targets"}]},{"@type":"WebSite","@id":"https:\/\/cybersecuritynews.com\/#website","url":"https:\/\/cybersecuritynews.com\/","name":"Cyber Security News","description":"World&#039;s #1 Premier Cybersecurity and Hacking News Portal","publisher":{"@id":"https:\/\/cybersecuritynews.com\/#organization"},"potentialAction":[{"@type":"SearchAction","target":{"@type":"EntryPoint","urlTemplate":"https:\/\/cybersecuritynews.com\/?s={search_term_string}"},"query-input":{"@type":"PropertyValueSpecification","valueRequired":true,"valueName":"search_term_string"}}],"inLanguage":"en-US"},{"@type":"Organization","@id":"https:\/\/cybersecuritynews.com\/#organization","name":"Cyber Security News","url":"https:\/\/cybersecuritynews.com\/","logo":{"@type":"ImageObject","inLanguage":"en-US","@id":"https:\/\/cybersecuritynews.com\/#\/schema\/logo\/image\/","url":"https:\/\/cybersecuritynews.com\/wp-content\/uploads\/2021\/06\/Cyber-security.jpg","contentUrl":"https:\/\/cybersecuritynews.com\/wp-content\/uploads\/2021\/06\/Cyber-security.jpg","width":200,"height":200,"caption":"Cyber Security News"},"image":{"@id":"https:\/\/cybersecuritynews.com\/#\/schema\/logo\/image\/"},"sameAs":["https:\/\/www.facebook.com\/Hackingtutorialsandnews","https:\/\/x.com\/The_Cyber_News","https:\/\/www.linkedin.com\/company\/cybersecurity-news\/"]},{"@type":"Person","@id":"https:\/\/cybersecuritynews.com\/#\/schema\/person\/7eb7d8d026aa5dd566f134d4def5c05c","name":"Tushar Subhra Dutta","image":{"@type":"ImageObject","inLanguage":"en-US","@id":"https:\/\/cybersecuritynews.com\/#\/schema\/person\/image\/","url":"https:\/\/secure.gravatar.com\/avatar\/f8bc0247220c7d4dea6c8b5a77d910613305ead17b13c2a7920b400435a848dd?s=96&d=mm&r=g","contentUrl":"https:\/\/secure.gravatar.com\/avatar\/f8bc0247220c7d4dea6c8b5a77d910613305ead17b13c2a7920b400435a848dd?s=96&d=mm&r=g","caption":"Tushar Subhra Dutta"},"description":"Tushar is a senior cybersecurity and breach reporter. He specializes in covering cybersecurity news, trends, and emerging threats, data breaches, and malware attacks. With years of experience, he brings clarity and depth to complex security topics.","url":"https:\/\/cybersecuritynews.com\/author\/tushar\/"}]}},"jetpack_featured_media_url":"https:\/\/i0.wp.com\/blogger.googleusercontent.com\/img\/b\/R29vZ2xl\/AVvXsEg3X2IX6IBmqjBjM1kuEKGgRysYrqlJxa52UfDXqmkutjmPvALLn25XdxEMoAw63Bxnq2u8NUg0ylxc_y5PcyapqQAm3L3oTEwqPJ7DMxHTWQOzogHOtA_k3YKrla5r06lR5p-pa5C7c5Rf7eBYOpSXX56ZEd9e_MxAP0m1eVJbfnWecqUgUPFjRj5_Wgo\/s16000\/Chinese%20Hackers%20Weaponizes%20Software%20Vulnerabilities%20to%20Compromise%20Their%20Targets.webp?w=1600&resize=1600,900&ssl=1","jetpack_sharing_enabled":true,"_links":{"self":[{"href":"https:\/\/cybersecuritynews.com\/wp-json\/wp\/v2\/posts\/118584","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/cybersecuritynews.com\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/cybersecuritynews.com\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/cybersecuritynews.com\/wp-json\/wp\/v2\/users\/6"}],"replies":[{"embeddable":true,"href":"https:\/\/cybersecuritynews.com\/wp-json\/wp\/v2\/comments?post=118584"}],"version-history":[{"count":1,"href":"https:\/\/cybersecuritynews.com\/wp-json\/wp\/v2\/posts\/118584\/revisions"}],"predecessor-version":[{"id":118586,"href":"https:\/\/cybersecuritynews.com\/wp-json\/wp\/v2\/posts\/118584\/revisions\/118586"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/cybersecuritynews.com\/wp-json\/wp\/v2\/media\/118587"}],"wp:attachment":[{"href":"https:\/\/cybersecuritynews.com\/wp-json\/wp\/v2\/media?parent=118584"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/cybersecuritynews.com\/wp-json\/wp\/v2\/categories?post=118584"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/cybersecuritynews.com\/wp-json\/wp\/v2\/tags?post=118584"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}