Chinese Hackers Exploit Windows Zero-Day to Target European Diplomats
First seen 23 Nov 2025, 03:35 UTC
•

•100% similarity
•48.6
Share:
Export
Ask AI about this cluster
Analyzing cluster data...
Referenced clusters:
Something went wrong. Please try again.
Cluster AI
Ask questions about this threat cluster with AI-powered analysis.
Get Researcher $29.99/moArticle Content
Browse articles
Chinese state-affiliated hackers, identified as UNC6384, have exploited a Windows zero-day vulnerability (CVE-2025-9491) to conduct cyber espionage against European diplomats in countries such as Belgium and Hungary. The attacks, which began in September and October 2025, involved spearphishing emails that delivered malicious LNK files, enabling the installation of PlugX malware for remote access.
ThreatCluster AI