ThreatCluster

CISA Exposes BRICKSTORM Backdoor Linked to China APTs

First seen 5 Dec 2025, 12:43 UTC DarkreadingSecurityaffairs.Co 81% similarity 33

Article Content

Browse articles
ThreatCluster

CISA has disclosed details about the BRICKSTORM backdoor, which is linked to Chinese state-sponsored threat actors. This backdoor targets VMware vSphere environments within government and technology sectors, enabling long-term persistence on compromised systems. Ongoing cyber-espionage activities by these actors have been highlighted in the report.

ThreatCluster AI How this analysis works

Community

Browse all →

Tracked Entities in This Story