Chinese Ink Dragon Group Expands Cyber Espionage in Europe
Article Content
Browse articles
The Ink Dragon Group, linked to China, has infiltrated European government networks by exploiting misconfigured servers to establish relay nodes for cyber-espionage. Check Point reports that this campaign has affected several dozen victims, including government and telecommunications entities across Europe, Asia, and Africa.
Ask AI about this cluster
Answers cite the sources they use
Updated 183d ago How this analysis works
More articles in this cluster (5)
Following this threat?
Track GRU, FinalDraft and AWS in your own feed — you're alerted when they show up in new reporting, leak sites or exploitation.
Free account · no card needed
Continue Reading
Fire Ant Threat Actor Targets Trusted Infrastructure in 2026 The China-nexus threat actor known as Fire Ant has evolved its tactics in 2026, transitioning from targeting VMware hypervisors to compromising trusted infrastructure, including Cisco routers, TACACS authentication servers, and Linux management hosts. This shift allows Fire Ant to collect credentials, traffic, and…
GRU Cyber Operations Targeting Ukraine and NATO Allies The UK government has published a report detailing the cyber and hybrid threat operations of the Russian GRU, specifically focusing on Unit 29155. This unit has been linked to various cyber-attacks against Ukraine, NATO, and other entities, employing tactics such as wiper malware like 'Whispergate'. The report…