Scworld
APT Groups Target Construction Sector for Credential Theft
First seen 11 Nov 2025, 16:33 UTC
•
•38.9
Export
Article Content
Browse articles
Advanced persistent threat (APT) groups from China, Russia, North Korea, and Iran are increasingly attacking the construction industry to gain unauthorized access to corporate networks. These attacks exploit vulnerabilities such as phishing emails and stolen credentials for Remote Desktop Protocol (RDP), Citrix, and Secure Shell (SSH), driven by the sector's rapid digital transformation and reliance on third-party vendors.
Ask AI about this cluster
Answers cite the sources they use
Analyzing cluster data...
Referenced clusters
Something went wrong. Please try again.
More articles in this cluster
Continue Reading
Advanced Threat Actor Exploits Cisco and Citrix Zero-Day Vulnerabilities
FortiWeb WAF Vulnerability Enables Full Admin Control Exploitation
Massive Data Breach at Change Healthcare Affects 190 Million Americans
Critical Memory Overread Vulnerability in Citrix NetScaler Exploited
Critical RCE Vulnerabilities Under Active Exploitation
State-Sponsored Actors Target Network Edge Devices Amid Rising Exploits