Bleepingcomputer
Chinese Hackers Exploit Windows Vulnerability to Target European Diplomats
First seen 2 Nov 2025, 16:14 UTC
•


•23.6
Export
Article Content
Browse articles
A Chinese-linked hacking group, UNC6384, has been exploiting a Windows shortcut vulnerability to conduct cyber espionage against European diplomats in Hungary, Belgium, and other nations. The attacks involve spear phishing emails that deliver malicious LNK files, leading to the deployment of PlugX malware. This campaign has been linked to social engineering tactics centered around diplomatic events and has been active since September 2025.
Analyzing cluster data...
Referenced clusters:
Something went wrong. Please try again.
More articles in this cluster
Continue Reading
MuddyWater Targets U.S. Entities Amid Geopolitical Tensions
FamousSparrow APT Expands Targeting to Azerbaijani Energy Sector
QuickFox VPN Supply Chain Attack Delivers FDMTP Backdoor to Windows Users
TA416 Resumes Cyber Espionage Against European Governments Amid Geopolitical Tensions
Mustang Panda Launches PlugX RAT Campaign via Fake Browser Update
China-nexus Threat Actor Deploys PlugX in Persian Gulf Amid Middle East Conflict