Newsbytesapp Massive Data Breach at China's National Supercomputing Center Exposes Sensitive Military Data
Article Content
- •Over 10 petabytes of sensitive data stolen from China's NSCC.
- •Hacker accessed the system via a compromised VPN and used a botnet for data extraction.
- •The breach exposes vulnerabilities in China's defense and technological infrastructure.
A hacker, identified as FlamingChina, has allegedly breached the National Supercomputing Center (NSCC) in Tianjin, China, extracting over 10 petabytes of sensitive data, including classified military documents and missile schematics. The breach is considered one of the largest data thefts in Chinese history, affecting over 6,000 clients, including defense and science agencies. The attacker reportedly accessed the supercomputer through a compromised VPN and used a botnet to extract data over several months without detection. Samples of the stolen data were posted on an anonymous Telegram channel on February 6, 2026. Experts have reviewed the data and believe it to be genuine, raising concerns about vulnerabilities in China's technological infrastructure. The hacker is offering limited access to the data for thousands of dollars, with full access priced at hundreds of thousands, payable in cryptocurrency. The incident highlights significant security weaknesses in state-backed infrastructure.
Ask AI about this cluster
Answers cite the sources they use
Timeline
More articles in this cluster (22)
Following this threat?
Track Aviation Industry Corporation Of China in your own feed — you're alerted when they show up in new reporting, leak sites or exploitation.
Free account · no card needed
Continue Reading
Critical Zero-Day Vulnerability in Cisco Secure Email Gateway Exploited On September 14, 2026, Cisco disclosed a critical SQL injection vulnerability (CVE-2026-76461) in its Secure Email Gateway, allowing unauthenticated remote attackers to execute arbitrary commands with root privileges. This vulnerability arises from insufficient validation in the email parsing logic. Cisco confirmed…
Critical WSO2 API Manager Vulnerability Under Active Exploitation A critical vulnerability (CVE-2026-5430) in WSO2 API Manager is being actively exploited, allowing unauthenticated attackers to forge admin tokens via JWT authentication bypass. This flaw, which has a CVSS score of 10.0, affects multiple WSO2 products including API Manager, Universal Gateway, Traffic Manager, and API…