hunt.io
Chinese Operator Breaches Philippine Nuclear and Naval Entities
Article Content
A suspected Chinese-speaking operator has compromised a Philippine nuclear research body and a marine engineering company supporting the Philippine Navy by exploiting known vulnerabilities. The attacker utilized CVE-2023-49105, an authentication-bypass flaw in ownCloud, allowing unauthorized access to sensitive files, including nuclear material registries and personal information of officials. Additionally, CVE-2024-28000 was exploited in the WordPress site of the marine engineering company. Hunt.io discovered an exposed server containing attack scripts and logs, indicating a significant data breach. The stolen data is estimated to be around 9 GB, with critical documents related to nuclear safety and operational plans. The incident highlights the ongoing cyber threats to critical infrastructure in the Philippines amidst rising geopolitical tensions. The attack was reported on August 31, 2026, after a responsible disclosure process by Hunt.io.
Key Points: • Over 14,000 Dahua cameras compromised in related incidents. • CVE-2023-49105 exploited for unauthorized access to sensitive nuclear data. • Estimated 9 GB of sensitive data stolen, including personal information of officials.
Ask AI about this cluster
Answers cite the sources they use
Analyzing cluster data...
Referenced clusters
Something went wrong. Please try again.