Bleepingcomputer
Chinese Hackers Exploit Windows Zero-Day to Target European Diplomats
First seen 2 Dec 2025, 18:33 UTC
•



+10
•51.1
Export
Article Content
Browse articles
A China-linked hacking group, UNC6384, has exploited a Windows zero-day vulnerability to conduct cyber espionage against European diplomats in Hungary, Belgium, and other nations. The attacks, which occurred in September and October 2025, involved spearphishing emails that delivered malicious LNK files, allowing the attackers to execute arbitrary code on compromised systems. The vulnerability, identified as CVE-2025-9491, remains unpatched by Microsoft.
Analyzing cluster data...
Referenced clusters:
Something went wrong. Please try again.
More articles in this cluster
Continue Reading
MuddyWater Targets U.S. Entities Amid Geopolitical Tensions
Armored Likho Expands Cyber-Espionage with New Rust Toolkit
GrayAlpha Threat Actor Uses MaskBat Loader for NetSupport RAT Deployments
China-linked Bronze Butler Exploits Motex Lanscope Zero-Day Vulnerability
Critical Vulnerabilities Discovered in Mozilla Products
Cyber Adversaries Exploit File Enumeration and Data Collection Techniques