Chinese Hackers Exploit Windows Zero-Day to Target European Diplomats
First seen 23 Nov 2025, 03:35 UTC
•

•48.6
Export
Article Content
Browse articles
Chinese state-affiliated hackers, identified as UNC6384, have exploited a Windows zero-day vulnerability (CVE-2025-9491) to conduct cyber espionage against European diplomats in countries such as Belgium and Hungary. The attacks, which began in September and October 2025, involved spearphishing emails that delivered malicious LNK files, enabling the installation of PlugX malware for remote access.
Ask AI about this cluster
Answers cite the sources they use
Analyzing cluster data...
Referenced clusters
Something went wrong. Please try again.
More articles in this cluster
Continue Reading
MuddyWater Targets U.S. Entities Amid Geopolitical Tensions
Armored Likho Expands Cyber-Espionage with New Rust Toolkit
GrayAlpha Threat Actor Uses MaskBat Loader for NetSupport RAT Deployments
China-linked Bronze Butler Exploits Motex Lanscope Zero-Day Vulnerability
Critical Vulnerabilities Discovered in Mozilla Products
Cyber Adversaries Exploit File Enumeration and Data Collection Techniques